目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1359 元

100%

CVE-2025-54769 PoC — XORUX LPAR2RRD 安全漏洞

来源
关联漏洞
标题: XORUX LPAR2RRD 安全漏洞 (CVE-2025-54769)
Description:XORUX LPAR2RRD是捷克XORUX公司的一个服务器性能监控平台。 XORUX LPAR2RRD存在安全漏洞,该漏洞源于目录遍历和文件上传功能结合,可能导致远程代码执行。
Description
A C‑based proof‑of‑concept exploit for CVE‑2025‑54769, automating the creation and upload of a malicious Perl CGI script to LPAR2RRD’s upgrade endpoint, leveraging directory traversal for remote code execution.
介绍
# CVE-2025-54769 – LPAR2RRD (RCE)

## Description : 
 

This repository contains a Proof‑of‑Concept (PoC) exploit for CVE-2025-54769, a vulnerability found in lpar2rrd.


The vulnerability allows remote code execution (RCE) and directory traversal by abusing the /lpar2rrd-cgi/upgrade.sh endpoint. The exploit workflow is as follows:


- Script Generation : 


Automatically creates a malicious Perl CGI payload (users.pl) that executes arbitrary shell commands (default: whoami).


- Payload Upload :


Uses libcurl to POST the generated script as an “upgrade package” to the vulnerable endpoint, bypassing basic file validation.


- Directory Traversal : 


Exploits a path traversal flaw to move the uploaded script into the CGI directory, making it accessible for execution.


- Command Execution & Retrieval:


Triggers the CGI script via a crafted GET request (/lpar2rrd-cgi/users.sh?cmd=commandLinux) and captures the command output for the attacker.


## Usage :

```
gcc exploit.c argparse.c -o exploit -lcurl
./exploit -i <IP> -p PORT -t <PROTOCOL>
```
- Verbose Mode :
```
./exploit -i <IP> -p <PORT> -t <PROTOCOL> -v 
``` 

Replace with the target LPAR2RRD instance. The target port should match the service (e.g., 80 for HTTP, 443 for HTTPS), and the protocol should be either http or https

## References :


- NVD Entry: https://nvd.nist.gov/vuln/detail/CVE-2025-54769  


- CVE : https://www.cve.org/CVERecord?id=CVE-2025-54769

## License :


MIT License
文件快照

登录后查看神龙缓存的 POC 文件快照

登录查看
备注
    1. 建议优先通过来源进行访问。
    2. 本地 POC 快照面向订阅用户开放;当原始来源失效或无法访问时,本地镜像作为订阅权益的一部分提供。
    3. 持续抓取、验证、维护这份 POC 档案需要不少投入,因此本地快照已纳入付费订阅。您的订阅是让这份资料能继续走下去的关键,由衷感谢。 查看订阅方案 →