Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
vaultize_CVE-2024-36079 — Proof-of-concept exploit for CVE-2024-36079, demonstrating arbitrary file upload in Vaultize DRM v21.07.27 via path traversal, enabling SSH key injection for system access. | Kitploit
Tools/GitHubGitHub/dxrvs/vaultize_cve-2024-36079
Privilege EscalationVulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingRed Teaming
GitHubdxrvs/vaultize_cve-2024-36079

vaultize_CVE-2024-36079

Proof-of-concept exploit for CVE-2024-36079, demonstrating arbitrary file upload in Vaultize DRM v21.07.27 via path traversal, enabling SSH key injection for system access.

View Repository
1122 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

About Vulnerability

The on-premise Vaultize DRM v.21.07.27 is vulnerable to the upload of arbitrary files.

Files whose names contain part of the absolute path of the file system may be uploaded due to the lack of filename filtering.

When you try to download the files the application creates a temporary file located in the final path in the file system.

The file exists until downloading is complete, then it is deleted. This makes it possible for an attacker to write an arbitrary file to any directory with the rights of the application.

Demo

One form of product distribution is to deliver a pre-built VMware virtual machine image with the on-premise version of the application installed. In this case, it is possible to gain access to the system by uploading the ssh public key.

Disclosure timeline

  • vulnerability discovered - 05/05/22
  • software distributor notified - 05/13/22
  • first letter to vendor (no response) - 07/04/22
  • second letter to vendor (no response) - 08/31/22
  • created ticket on https://support.vaultize.com with id #34833 - 10/19/22
  • patch partially fixing the vulnerability - 12/27/23
  • patch fixing the vulnerability - 05/15/23
  • CVE-2024-36079 registered - 05/19/24
Download Tool