Skip to content

rvizx/CVE-2023-27163

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

2 Commits
 
 
 
 

Repository files navigation

CVE-2023-27163 - Request Baskets SSRF

Request Baskets SSRF PoC

alt text

Request Baskets versions <1.2.1 are vulnerable to Server Side Request Forgery (SSRF) attacks via the /api/baskets/{name} component.

usage

git clone https://github.com/rvizx/CVE-2023-27163
cd CVE-2023-27163
chmod +x exploit.sh 
./exploit.sh <target_url> <attacker_url>

notes

Credit to @beet1e from Shanghai Jiao Tong University and @chenlibo147 , @houqinsheng, 202037049@mail.sdu.edu.cn from Shandong University. Article : https://notes.sjtu.edu.cn/s/MUUhEymt7#

Releases

No releases published

Packages

No packages published

Languages