add SonicWall_SSL-VPN_RCE

This commit is contained in:
tardc 2021-02-04 15:57:03 +08:00
parent 04a873c7af
commit 535c249010
2 changed files with 9 additions and 0 deletions

View File

@ -0,0 +1,9 @@
# SonicWall SSL-VPN RCE
There are vulnerabilities in the historical version of SonicWall SSL-VPN. Remote attackers use CGI programs to handle logic vulnerabilities and construct malicious User-Agents, which can cause remote arbitrary command execution and gain host control authority.
**[FOFA](https://fofa.so/result?q=app%3D%22SonicWALL-SSL-VPN%22&qbase64=YXBwPSJTb25pY1dBTEwtU1NMLVZQTiI%3D&file=&file=) query rule**: app="SonicWALL-SSL-VPN"
# Demo
![](SonicWall_SSL-VPN_RCE.gif)

Binary file not shown.

After

Width:  |  Height:  |  Size: 740 KiB