PoC for CVE-2025-1337
Proof of concept for the Remote Code Execution (RCE) vulnerability in the LogServ v1.2 service.
Vulnerability Details
- CVE: CVE-2025-1337
- Software: LogServ v1.2
- Type: Insecure deserialization of a session object in the
session_data cookie.
- Impact: An unauthenticated attacker can send a malicious cookie to execute arbitrary code on the server.
Status
The script is functional but unstable. DO NOT USE IN REAL ENVIRONMENTS.