PoC-in-GitHub/2024/CVE-2024-24590.json

212 lines
7.7 KiB
JSON
Raw Normal View History

2024-06-26 08:47:13 +02:00
[
{
"id": 813761890,
"name": "ClearML-vulnerability-exploit-RCE-2024-CVE-2024-24590-",
2024-07-08 02:29:05 +02:00
"full_name": "HexDoesRandomShit\/ClearML-vulnerability-exploit-RCE-2024-CVE-2024-24590-",
2024-06-26 08:47:13 +02:00
"owner": {
2024-07-08 02:29:05 +02:00
"login": "HexDoesRandomShit",
2024-06-26 08:47:13 +02:00
"id": 172425960,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/172425960?v=4",
2024-07-08 02:29:05 +02:00
"html_url": "https:\/\/github.com\/HexDoesRandomShit"
2024-06-26 08:47:13 +02:00
},
2024-07-08 02:29:05 +02:00
"html_url": "https:\/\/github.com\/HexDoesRandomShit\/ClearML-vulnerability-exploit-RCE-2024-CVE-2024-24590-",
2024-06-26 08:47:13 +02:00
"description": "Here is an exploit in python to exploit the CVE-2024-24590, which is an upload pickle in a ClearML, which leads to arbitrary code execution... Enjoy :D",
"fork": false,
"created_at": "2024-06-11T17:33:36Z",
2024-07-16 20:29:52 +02:00
"updated_at": "2024-07-16T15:23:05Z",
"pushed_at": "2024-07-16T15:23:02Z",
2024-06-26 08:47:13 +02:00
"stargazers_count": 2,
"watchers_count": 2,
"has_discussions": false,
"forks_count": 1,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 1,
"watchers": 2,
"score": 0,
"subscribers_count": 1
},
{
"id": 813864710,
"name": "ClearML-CVE-2024-24590",
"full_name": "OxyDeV2\/ClearML-CVE-2024-24590",
"owner": {
"login": "OxyDeV2",
"id": 46215222,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/46215222?v=4",
"html_url": "https:\/\/github.com\/OxyDeV2"
},
"html_url": "https:\/\/github.com\/OxyDeV2\/ClearML-CVE-2024-24590",
"description": "Proof of concept for CVE-2024-24590",
"fork": false,
"created_at": "2024-06-11T22:30:26Z",
"updated_at": "2024-06-14T20:13:28Z",
"pushed_at": "2024-06-13T11:33:29Z",
"stargazers_count": 7,
"watchers_count": 7,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 7,
"score": 0,
"subscribers_count": 1
},
{
"id": 814218929,
"name": "CVE-2024-24590",
"full_name": "DemonPandaz2763\/CVE-2024-24590",
"owner": {
"login": "DemonPandaz2763",
"id": 69938676,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/69938676?v=4",
"html_url": "https:\/\/github.com\/DemonPandaz2763"
},
"html_url": "https:\/\/github.com\/DemonPandaz2763\/CVE-2024-24590",
"description": "Another CVE-2024-24590 poc",
"fork": false,
"created_at": "2024-06-12T15:07:46Z",
"updated_at": "2024-06-12T15:12:54Z",
"pushed_at": "2024-06-12T15:12:51Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 814871568,
"name": "CVE-2024-24590-ClearML-RCE-Exploit",
"full_name": "xffsec\/CVE-2024-24590-ClearML-RCE-Exploit",
"owner": {
"login": "xffsec",
"id": 162821824,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/162821824?v=4",
"html_url": "https:\/\/github.com\/xffsec"
},
"html_url": "https:\/\/github.com\/xffsec\/CVE-2024-24590-ClearML-RCE-Exploit",
"description": null,
"fork": false,
"created_at": "2024-06-13T22:17:57Z",
"updated_at": "2024-06-14T00:16:10Z",
"pushed_at": "2024-06-13T22:20:15Z",
"stargazers_count": 1,
"watchers_count": 1,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 1,
"score": 0,
"subscribers_count": 1
},
{
"id": 815490192,
"name": "CVE-2024-24590-ClearML-RCE-CMD-POC",
"full_name": "diegogarciayala\/CVE-2024-24590-ClearML-RCE-CMD-POC",
"owner": {
"login": "diegogarciayala",
"id": 84715095,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/84715095?v=4",
"html_url": "https:\/\/github.com\/diegogarciayala"
},
"html_url": "https:\/\/github.com\/diegogarciayala\/CVE-2024-24590-ClearML-RCE-CMD-POC",
"description": "CVE-2024-24590 ClearML RCE&CMD POC",
"fork": false,
"created_at": "2024-06-15T10:09:51Z",
"updated_at": "2024-06-17T09:25:35Z",
"pushed_at": "2024-06-15T11:09:13Z",
"stargazers_count": 8,
"watchers_count": 8,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 8,
"score": 0,
"subscribers_count": 1
},
{
"id": 817754834,
"name": "CVE-2024-24590",
"full_name": "junnythemarksman\/CVE-2024-24590",
"owner": {
"login": "junnythemarksman",
"id": 20056452,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/20056452?v=4",
"html_url": "https:\/\/github.com\/junnythemarksman"
},
"html_url": "https:\/\/github.com\/junnythemarksman\/CVE-2024-24590",
"description": "Deserialization of untrusted data can occur in versions 0.17.0 to 1.14.2 of the client SDK of Allegro AIs ClearML platform, enabling a maliciously uploaded artifact to run arbitrary code on an end users system when interacted with.",
"fork": false,
"created_at": "2024-06-20T11:23:56Z",
"updated_at": "2024-06-21T00:52:48Z",
"pushed_at": "2024-06-21T00:52:45Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 1
2024-07-21 08:29:41 +02:00
},
{
"id": 831603638,
"name": "ClearML-CVE-2024-24590",
"full_name": "sviim\/ClearML-CVE-2024-24590",
"owner": {
"login": "sviim",
"id": 172663851,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/172663851?v=4",
"html_url": "https:\/\/github.com\/sviim"
},
"html_url": "https:\/\/github.com\/sviim\/ClearML-CVE-2024-24590",
"description": "With this script you can exploit the CVE-2024-24590",
"fork": false,
"created_at": "2024-07-21T04:16:24Z",
2024-07-21 20:29:20 +02:00
"updated_at": "2024-07-21T18:22:37Z",
2024-07-21 08:29:41 +02:00
"pushed_at": "2024-07-21T04:48:47Z",
2024-07-21 20:29:20 +02:00
"stargazers_count": 2,
"watchers_count": 2,
2024-07-21 08:29:41 +02:00
"has_discussions": false,
2024-07-21 14:29:38 +02:00
"forks_count": 1,
2024-07-21 08:29:41 +02:00
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
2024-07-21 14:29:38 +02:00
"forks": 1,
2024-07-21 20:29:20 +02:00
"watchers": 2,
2024-07-21 08:29:41 +02:00
"score": 0,
2024-07-22 08:29:43 +02:00
"subscribers_count": 1
2024-06-26 08:47:13 +02:00
}
]