Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

SOPlanning Authenticated RCE Detection Template #11503

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

soonghee2
Copy link
Contributor

  • Introduced soplanning-rce.yaml to detect authenticated remote code execution (RCE) in SOPlanning v1.52.01.
  • Leverages PHP file upload vulnerability for detection.
  • Includes matchers and extractors for login and file upload processes.

Template / PR Information

  • Added detection for a remote code execution vulnerability in SOPlanning version 1.52.01 through an authenticated PHP file upload mechanism.
  • References: Exploit-DB: 52082

Template Validation

I've validated this template locally?

  • YES
  • NO

Additional Details (leave it blank if not applicable)

Additional References:

- Introduced soplanning-rce.yaml to detect authenticated remote code execution (RCE) in SOPlanning v1.52.01.
- Leverages PHP file upload vulnerability for detection.
- Includes matchers and extractors for login and file upload processes.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant