This script helps to identify CVE-2021-26855 ssrf Poc
# CVE-2021-26855-SSRF-Poc
This script helps to identify CVE-2021-26855 ssrf Poc
Reference: https://proxylogon.com/
## Script usage
#### python CVE-2021-26855.py -H target.com -B xxxxxxxxxxxxxxxxxx.burpcollaborator.net

If you are able to retrieve tokens through HTTPS request. then the target is vulnerable. otherwise, it will be a false positive.
Check the following headers.
X-SourceCafeServer:
X-CommonAccessToken:

登录后查看神龙缓存的 POC 文件快照
登录查看