Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2018-1000082 PoC — Ajenti 跨站请求伪造漏洞

Source
Associated Vulnerability
Title:Ajenti 跨站请求伪造漏洞 (CVE-2018-1000082)
Description:Ajenti是白俄罗斯软件开发者Eugene Pankov所研发的一套基于Web的开源服务器管理系统。该系统附带多种预制插件,用于配置和监控服务器软件和服务,如Apache、计划任务(Cron)等。 Ajenti 2版本中用于管理服务器工具的命令执行面板存在跨站请求伪造漏洞。远程攻击者可利用该漏洞在服务器上执行代码。
File Snapshot

[4.0K] /data/pocs/f384467e00505f979f22855be0377a83456612d2 0 directories, 0 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.