
Magento/Adobe Commerce XXE 취약점용 완전한 CosmicSting (CVE-2024-34102) 익스플로잇 스위트
CVE-2024-34102에 대한 완전한 익스플로잇 스위트 - Adobe Commerce / Magento 2.4.x의 CosmicSting XXE 취약점입니다.
| 공격 벡터 | 엔드포인트 |
|---|
| 표준 XXE | /rest/V1/guest-carts/{id}/estimate-shipping-methods |
| 표준 XXE (모든) | /rest/all/V1/guest-carts/{id}/estimate-shipping-methods |
| 청구 주소 | /rest/V1/guest-carts/{id}/billing-address |
| dataIsURL | 동일한 엔드포인트와 dataIsURL: true |
| totalsReader | 대체 JSON 구조 |
| 주문 | /rest/V1/orders, /rest/V1/order |
| 직접 경로 | /app/etc/env.php, /.env 등 |
app/etc/env.php (데이터베이스 자격 증명, 암호화 키).env (환경 변수)/etc/passwd (사용자 열거)/etc/hosts (내부 네트워크 매핑)/proc/self/environ (프로세스 환경)app/etc/config.php, app/etc/config.local.phpvar/log/system.log, var/log/exception.logpip install requests
python3 cosmicsting-cve-2024-34102.py https://target.com