mirror of
https://github.com/0xMarcio/cve.git
synced 2025-11-28 18:48:49 +00:00
33 lines
1.4 KiB
Markdown
33 lines
1.4 KiB
Markdown
### [CVE-2024-42323](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-42323)
|
||

|
||

|
||

|
||
|
||
### Description
|
||
|
||
SnakeYaml Deser Load Malicious xml rce vulnerability in Apache HertzBeat (incubating). This vulnerability can only be exploited by authorized attackers.This issue affects Apache HertzBeat (incubating): before 1.6.0.Users are recommended to upgrade to version 1.6.0, which fixes the issue.
|
||
|
||
### POC
|
||
|
||
#### Reference
|
||
No PoCs from references.
|
||
|
||
#### Github
|
||
- https://github.com/12442RF/POC
|
||
- https://github.com/1diot9/MyJavaSecStudy
|
||
- https://github.com/DMW11525708/wiki
|
||
- https://github.com/J1ezds/Vulnerability-Wiki-page
|
||
- https://github.com/Lern0n/Lernon-POC
|
||
- https://github.com/Linxloop/fork_POC
|
||
- https://github.com/Threekiii/Awesome-POC
|
||
- https://github.com/adysec/POC
|
||
- https://github.com/eeeeeeeeee-code/POC
|
||
- https://github.com/g1san/Agents-for-Vulnerable-Dockers-and-related-Benchmarks
|
||
- https://github.com/greenberglinken/2023hvv_1
|
||
- https://github.com/iemotion/POC
|
||
- https://github.com/laoa1573/wy876
|
||
- https://github.com/oLy0/Vulnerability
|
||
- https://github.com/plbplbp/loudong001
|
||
- https://github.com/yulate/yulate
|
||
|