目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

CVE-2021-44228 PoC — Apache Log4j 代码问题漏洞

来源
关联漏洞
标题: Apache Log4j 代码问题漏洞 (CVE-2021-44228)
Description:Apache Log4j是美国阿帕奇(Apache)基金会的一款基于Java的开源日志记录工具。 Apache Log4J 存在代码问题漏洞,攻击者可设计一个数据请求发送给使用 Apache Log4j工具的服务器,当该请求被打印成日志时就会触发远程代码执行。
Description
Testing WAF protection against CVE-2021-44228 Log4Shell
介绍
Simple bash script to test your WAF or other devices against Log4Shell attack strings and various bypasses

Bypass tricks from: https://github.com/Puliczek/CVE-2021-44228-PoC-log4j-bypass-words

To run:
```
./cve-2021-44228.sh -t <URL of the target> -c <HTTP Status Code expected>
```

Or to use the defaults of https://127.0.0.1 and 403:
```
./cve-2021-44228.sh
```

For each test string, this will pass the string into a request to the target using various vectors such as:

* Headers: Using the `User-Agent` header
* URI: Appending the string to requested URI
* Cookies: As the data value of a Cookie
* Query String: As the value of a query string parameter
* POST Body Data: As the body data of a POST request


Example output:
```
Test String: ${jndi:}
-------------------------------------------------------------
HEADERS: curl -ksg -w "%{http_code}" https://127.0.0.1 -A '${jndi:}'
    403
URI: curl -ksg -w "%{http_code}" 'https://127.0.0.1/${jndi:}'
    403
Cookies: curl -ksg -w "%{http_code}" https://127.0.0.1 -b 'session=${jndi:}'
    403
Query String: curl -ksg -w "%{http_code}" 'https://127.0.0.1/something?session=${jndi:}'
    403
POST Data: curl -X POST -ksg -w "%{http_code}" https://127.0.0.1 -d '${jndi:}'
    403
```
文件快照

登录后查看神龙缓存的 POC 文件快照

登录查看
备注
    1. 建议优先通过来源进行访问。
    2. 本地 POC 快照面向订阅用户开放;当原始来源失效或无法访问时,本地镜像作为订阅权益的一部分提供。
    3. 持续抓取、验证、维护这份 POC 档案需要不少投入,因此本地快照已纳入付费订阅。您的订阅是让这份资料能继续走下去的关键,由衷感谢。 查看订阅方案 →