
Original standalone Proof-of-Concept exploit and execution harness for CVE-2023-20052 (ClamAV DMG XML Entity Expansion).
Functional, self-developed Proof-of-Concept (PoC) exploit for CVE-2023-20052, a vulnerability in ClamAV (versions <= 1.0.0, <= 0.105.1, and <= 0.103.7) enabling arbitrary file read via XML Entity Expansion (XXE) during DMG file parsing.
This repository provides an original, standalone execution script to demonstrate the exploit chain, inspect the parsing behavior, and validate defensive detection rules against vulnerable scanning agents.

git clone https://github.com/tralsesec/CVE-2023-20052.git
cd CVE-2023-20052
chmod +x exploit.sh
./exploit.sh
This software is provided strictly for educational purposes and authorized security testing. The authors are not responsible for any direct or indirect harm, damage, or legal consequences resulting from the use of this tool. Use at your own risk.