Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-24881 PoC — Enhancesoft osTicket 代码问题漏洞

Source
Associated Vulnerability
Title:Enhancesoft osTicket 代码问题漏洞 (CVE-2020-24881)
Description:Enhancesoft osTicket是美国Enhancesoft公司的一套开源的票务系统。 osTicket 1.14.3之前版本存在代码问题漏洞,该漏洞允许攻击者向服务器添加恶意文件和执行端口扫描。
Description
SSRF vulnerability exists in osTicket before 1.14.3, allowing an attacker to add malicious files to the server or perform port scanning.
File Snapshot

id: CVE-2020-24881 info: name: OsTicket < 1.14.3 - Server Side Request Forgery author: hnd3884 ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.