
React/Next.js अनुप्रयोगों में CVE-2025-55182 के लिए बहु-तकनीक भेद्यता डिटेक्टर। संवेदनशील सर्वर एक्शन एंडपॉइंट्स की पहचान करने के लिए गैजेट चेन, RCE पेलोड और WAF बाईपास वेरिएंट का परीक्षण करता है।
React/Next.js अनुप्रयोगों में CVE-2025-55182 के लिए एक व्यापक भेद्यता पहचान उपकरण जिसमें कई पहचान तकनीकें हैं।
केवल अधिकृत सुरक्षा परीक्षण और अनुसंधान उद्देश्यों के लिए
यह उपकरण इसके लिए डिज़ाइन किया गया है:
कंप्यूटर सिस्टम तक अनधिकृत पहुंच अवैध है। परीक्षण से पहले हमेशा लिखित अनुमति प्राप्त करें।
यह डिटेक्टर कई तकनीकों का उपयोग करके व्यापक रूप से परीक्षण करता है कि क्या कोई लक्ष्य एप्लिकेशन CVE-2025-55182 के लिए असुरक्षित है:
उपकरण हानिरहित संचालन के साथ Node.js गैजेट चेन का परीक्षण करता है:
1+1) का मूल्यांकन करता हैecho test) निष्पादित करता हैpath) लोड करता है/dev/null) पढ़ता हैपरीक्षण संचालन:
echo test, 1+1)/dev/null)नहीं करता:
यह उपकरण निर्भरता प्रबंधन और निष्पादन के लिए uv का उपयोग करता है।
कोई स्थापना आवश्यक नहीं! बस क्लोन करें और चलाएँ:
git clone <repository-url>
cd CVE-2025-55182/poc
uv run check http://target.com:3000
पहली बार चलाने पर उपकरण स्वचालित रूप से निर्भरताएँ स्थापित करेगा।
uv run check <target_url>
# Test a target with default settings (tests /formaction endpoint)
uv run check http://localhost:3002
# Specify custom endpoint
uv run check http://localhost:3002 --endpoint /api/formaction
# Test multiple targets from a file
uv run check --file targets.txt
# Save vulnerable hosts to file
uv run check --file targets.txt -o vulnerable.txt
# Increase timeout for slow connections
uv run check http://localhost:3002 --timeout 15
# Disable SSL verification (for self-signed certificates)
uv run check http://localhost:3002 --no-ssl-verify
# Quiet mode (minimal output)
uv run check http://localhost:3002 --quiet
usage: uv run check [-h] [-f FILE] [-e ENDPOINT] [-t TIMEOUT]
[--no-ssl-verify] [-q] [-o OUTPUT] [target]
positional arguments:
target लक्ष्य URL (जैसे, http://target.com:3000)
optional arguments:
-h, --help सहायता संदेश दिखाएं और बाहर निकलें
-f, --file FILE लक्ष्य URL वाली फ़ाइल (प्रति पंक्ति एक)
-e, --endpoint API एंडपॉइंट पथ (डिफ़ॉल्ट: /formaction)
-t, --timeout सेकंड में अनुरोध टाइमआउट (डिफ़ॉल्ट: 10)
--no-ssl-verify SSL प्रमाणपत्र सत्यापन अक्षम करें
-q, --quiet शांत मोड (न्यूनतम आउटपुट)
-o, --output OUTPUT असुरक्षित होस्ट लिखने के लिए आउटपुट फ़ाइल
0 - लक्ष्य असुरक्षित नहीं है1 - लक्ष्य असुरक्षित है130 - उपयोगकर्ता ने बाधित किया (Ctrl+C)# uv run check http://localhost:3002
======================================================================
CVE-2025-55182 Vulnerability Detector - Enhanced Edition
Multiple Detection Techniques | Comprehensive Coverage
======================================================================
[*] Testing http://localhost:3002/formaction
[*] Testing all detection techniques...
→ Gadget: fs#constructor: ✓ VULNERABLE
→ Gadget: vm#runInThisContext: ✓ VULNERABLE
→ Gadget: child_process#execSync: ✓ VULNERABLE
→ Gadget: module#_load: ✓ VULNERABLE
→ Gadget: fs#readFileSync: ✓ VULNERABLE
→ Gadget: util#promisify: ✗ Not vulnerable
→ Safe Side-Channel Detection: ✗ Not vulnerable
→ RCE PoC (Unix/Linux): ✗ Not vulnerable
→ RCE PoC (Windows): ✗ Not vulnerable
→ RCE with WAF Bypass (Unix/Linux): ✗ Not vulnerable
→ RCE with WAF Bypass (Windows): ✗ Not vulnerable
→ Advanced WAF Bypass (Unix/Linux): ✗ Not vulnerable
======================================================================
DETECTION RESULTS
======================================================================
Target: http://localhost:3002
Endpoint: /formaction
Techniques Tested: Multiple
Successful Techniques: 5 techniques detected vulnerability
Status: ⚠️ VULNERABLE
The target appears to be vulnerable to CVE-2025-55182.
Techniques that detected vulnerability:
-> Gadget: fs#constructor
-> Gadget: vm#runInThisContext
-> Gadget: child_process#execSync
-> Gadget: module#_load
-> Gadget: fs#readFileSync
Recommendation: Apply security patches immediately.
======================================================================
# uv run check http://localhost:8000
======================================================================
CVE-2025-55182 Vulnerability Detector - Enhanced Edition
Multiple Detection Techniques | Comprehensive Coverage
======================================================================
[*] Testing http://localhost:8000/formaction
[*] Testing all detection techniques...
→ Gadget: fs#constructor: ✗ Not vulnerable
→ Gadget: vm#runInThisContext: ✗ Not vulnerable
→ Gadget: child_process#execSync: ✗ Not vulnerable
→ Gadget: module#_load: ✗ Not vulnerable
→ Gadget: fs#readFileSync: ✗ Not vulnerable
→ Gadget: util#promisify: ✗ Not vulnerable
→ Safe Side-Channel Detection: ✗ Not vulnerable
→ RCE PoC (Unix/Linux): ✗ Not vulnerable
→ RCE PoC (Windows): ✗ Not vulnerable
→ RCE with WAF Bypass (Unix/Linux): ✗ Not vulnerable
→ RCE with WAF Bypass (Windows): ✗ Not vulnerable
→ Advanced WAF Bypass (Unix/Linux): ✗ Not vulnerable
======================================================================
DETECTION RESULTS
======================================================================
Target: http://localhost:8000
Endpoint: /formaction
Techniques Tested: Multiple
Status: ✓ NOT VULNERABLE
The target does not appear to be vulnerable to CVE-2025-55182.
All detection techniques failed to confirm vulnerability.
======================================================================
स्क्रिप्ट आपको एक साथ कई होस्ट का परीक्षण करने की अनुमति देती है।
# Create a file with target URLs (one per line)
echo "http://localhost:3002" > targets.txt
echo "http://localhost:8000" >> targets.txt
# Run batch scan
uv run check --file targets.txt -o vulnerable.txt