Simple Python code to check for arbitrary uploading# CVE-2024-3400
Simple Python code to check for arbitrary uploading to a PaloAlto
Simply checks for status codes returned from the paloalto before and after file creation.
This creates a randomly generated filename and attempts to call it back after post.
**This will save a file to your PaloAlto if vulnerable that you will need to clean up afterwards.**
Used information from https://github.com/h4x0r-dz/CVE-2024-3400 and rapid7 analysis https://attackerkb.com/topics/SSTk336Tmf/cve-2024-3400/rapid7-analysis?referrer=home
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view