PoC-in-GitHub/2021/CVE-2021-38294.json
2022-12-29 15:23:52 +09:00

31 lines
No EOL
1.2 KiB
JSON

[
{
"id": 583180461,
"name": "CVE-2021-38294",
"full_name": "Live-Hack-CVE\/CVE-2021-38294",
"owner": {
"login": "Live-Hack-CVE",
"id": 121191732,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/121191732?v=4",
"html_url": "https:\/\/github.com\/Live-Hack-CVE"
},
"html_url": "https:\/\/github.com\/Live-Hack-CVE\/CVE-2021-38294",
"description": "A Command Injection vulnerability exists in the getTopologyHistory service of the Apache Storm 2.x prior to 2.2.1 and Apache Storm 1.x prior to 1.2.4. A specially crafted thrift request to the Nimbus server allows Remote Code Execution (RCE) prior to authentication. CVE project by @Sn0wAlice",
"fork": false,
"created_at": "2022-12-29T02:15:54Z",
"updated_at": "2022-12-29T02:21:15Z",
"pushed_at": "2022-12-29T02:15:56Z",
"stargazers_count": 1,
"watchers_count": 1,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 1,
"score": 0
}
]