PoC-in-GitHub/2025/CVE-2025-31324.json
2025-05-05 21:34:47 +09:00

442 lines
No EOL
16 KiB
JSON

[
{
"id": 972739684,
"name": "CVE-2025-31324",
"full_name": "rxerium\/CVE-2025-31324",
"owner": {
"login": "rxerium",
"id": 59293085,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/59293085?v=4",
"html_url": "https:\/\/github.com\/rxerium",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/rxerium\/CVE-2025-31324",
"description": "SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially malicious executable binaries that could severely harm the host system. This could significantly affect the confidentiality, integrity, and availability of the targeted system.",
"fork": false,
"created_at": "2025-04-25T15:22:59Z",
"updated_at": "2025-05-03T05:27:41Z",
"pushed_at": "2025-04-25T16:36:23Z",
"stargazers_count": 5,
"watchers_count": 5,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [
"cybersecurity",
"netweaver",
"sap",
"vulnerability",
"zero-day"
],
"visibility": "public",
"forks": 0,
"watchers": 5,
"score": 0,
"subscribers_count": 1
},
{
"id": 973620962,
"name": "CVE-2025-31324",
"full_name": "redrays-io\/CVE-2025-31324",
"owner": {
"login": "redrays-io",
"id": 89958617,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/89958617?v=4",
"html_url": "https:\/\/github.com\/redrays-io",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/redrays-io\/CVE-2025-31324",
"description": "CVE-2025-31324, SAP Exploit",
"fork": false,
"created_at": "2025-04-27T11:39:26Z",
"updated_at": "2025-04-30T18:03:19Z",
"pushed_at": "2025-04-28T05:01:55Z",
"stargazers_count": 11,
"watchers_count": 11,
"has_discussions": false,
"forks_count": 2,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 2,
"watchers": 11,
"score": 0,
"subscribers_count": 1
},
{
"id": 973743589,
"name": "Onapsis_CVE-2025-31324_Scanner_Tools",
"full_name": "Onapsis\/Onapsis_CVE-2025-31324_Scanner_Tools",
"owner": {
"login": "Onapsis",
"id": 8865342,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/8865342?v=4",
"html_url": "https:\/\/github.com\/Onapsis",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/Onapsis\/Onapsis_CVE-2025-31324_Scanner_Tools",
"description": null,
"fork": false,
"created_at": "2025-04-27T16:40:45Z",
"updated_at": "2025-04-30T22:47:02Z",
"pushed_at": "2025-04-28T19:06:02Z",
"stargazers_count": 7,
"watchers_count": 7,
"has_discussions": false,
"forks_count": 3,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 3,
"watchers": 7,
"score": 0,
"subscribers_count": 2
},
{
"id": 973916204,
"name": "CVE-2025-31324",
"full_name": "moften\/CVE-2025-31324",
"owner": {
"login": "moften",
"id": 4262359,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/4262359?v=4",
"html_url": "https:\/\/github.com\/moften",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/moften\/CVE-2025-31324",
"description": "SAP PoC para CVE-2025-31324",
"fork": false,
"created_at": "2025-04-28T01:32:39Z",
"updated_at": "2025-04-28T01:33:44Z",
"pushed_at": "2025-04-28T01:33:31Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 973919514,
"name": "CVE-2025-31324-NUCLEI",
"full_name": "moften\/CVE-2025-31324-NUCLEI",
"owner": {
"login": "moften",
"id": 4262359,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/4262359?v=4",
"html_url": "https:\/\/github.com\/moften",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/moften\/CVE-2025-31324-NUCLEI",
"description": "Nuclei template for cve-2025-31324 (SAP)",
"fork": false,
"created_at": "2025-04-28T01:43:22Z",
"updated_at": "2025-04-28T01:49:36Z",
"pushed_at": "2025-04-28T01:49:33Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 974239532,
"name": "SAP-CVE-2025-31324",
"full_name": "Alizngnc\/SAP-CVE-2025-31324",
"owner": {
"login": "Alizngnc",
"id": 52749488,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/52749488?v=4",
"html_url": "https:\/\/github.com\/Alizngnc",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/Alizngnc\/SAP-CVE-2025-31324",
"description": "SAP NetWeaver Unauthenticated Remote Code Execution",
"fork": false,
"created_at": "2025-04-28T13:19:54Z",
"updated_at": "2025-04-28T13:52:18Z",
"pushed_at": "2025-04-28T13:52:14Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 974468141,
"name": "CVE-2025-31324_PoC",
"full_name": "ODST-Forge\/CVE-2025-31324_PoC",
"owner": {
"login": "ODST-Forge",
"id": 177167851,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/177167851?v=4",
"html_url": "https:\/\/github.com\/ODST-Forge",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/ODST-Forge\/CVE-2025-31324_PoC",
"description": "Proof-of-Concept for CVE-2025-31324: Unauthenticated upload in SAP NetWeaver Visual Composer Metadata Uploader",
"fork": false,
"created_at": "2025-04-28T20:32:21Z",
"updated_at": "2025-04-28T21:24:01Z",
"pushed_at": "2025-04-28T21:23:57Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 0
},
{
"id": 974544679,
"name": "CVE-2025-31324_PoC_SAP",
"full_name": "abrewer251\/CVE-2025-31324_PoC_SAP",
"owner": {
"login": "abrewer251",
"id": 150287770,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/150287770?v=4",
"html_url": "https:\/\/github.com\/abrewer251",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/abrewer251\/CVE-2025-31324_PoC_SAP",
"description": "Proof-of-Concept for CVE-2025-31324: Unauthenticated upload in SAP NetWeaver Visual Composer Metadata Uploader",
"fork": false,
"created_at": "2025-04-29T00:16:06Z",
"updated_at": "2025-04-29T00:18:05Z",
"pushed_at": "2025-04-29T00:18:02Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 974780964,
"name": "CVE-2025-31324",
"full_name": "Pengrey\/CVE-2025-31324",
"owner": {
"login": "Pengrey",
"id": 55480558,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/55480558?v=4",
"html_url": "https:\/\/github.com\/Pengrey",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/Pengrey\/CVE-2025-31324",
"description": "Unauthenticated upload in SAP NetWeaver Visual Composer Metadata Uploader",
"fork": false,
"created_at": "2025-04-29T09:46:53Z",
"updated_at": "2025-04-29T09:48:01Z",
"pushed_at": "2025-04-29T09:47:43Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 975332660,
"name": "Burp_CVE-2025-31324",
"full_name": "BlueOWL-overlord\/Burp_CVE-2025-31324",
"owner": {
"login": "BlueOWL-overlord",
"id": 204598752,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/204598752?v=4",
"html_url": "https:\/\/github.com\/BlueOWL-overlord",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/BlueOWL-overlord\/Burp_CVE-2025-31324",
"description": "Python-based Burp Suite extension is designed to detect the presence of CVE-2025-31324",
"fork": false,
"created_at": "2025-04-30T06:34:12Z",
"updated_at": "2025-05-01T17:30:51Z",
"pushed_at": "2025-05-01T17:30:47Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 975542488,
"name": "CVE-2025-31324-File-Upload",
"full_name": "nullcult\/CVE-2025-31324-File-Upload",
"owner": {
"login": "nullcult",
"id": 63312212,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/63312212?v=4",
"html_url": "https:\/\/github.com\/nullcult",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/nullcult\/CVE-2025-31324-File-Upload",
"description": "A totally unauthenticated file-upload endpoint in Visual Composer lets anyone drop arbitrary files (e.g., a JSP web-shell) onto the server.",
"fork": false,
"created_at": "2025-04-30T13:39:30Z",
"updated_at": "2025-05-05T12:22:22Z",
"pushed_at": "2025-04-30T13:41:30Z",
"stargazers_count": 1,
"watchers_count": 1,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 1,
"score": 0,
"subscribers_count": 1
},
{
"id": 975607640,
"name": "jsp-webshell-scanner",
"full_name": "respondiq\/jsp-webshell-scanner",
"owner": {
"login": "respondiq",
"id": 209808385,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/209808385?v=4",
"html_url": "https:\/\/github.com\/respondiq",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/respondiq\/jsp-webshell-scanner",
"description": "🔍 A simple Bash script to detect malicious JSP webshells, including those used in exploits of SAP NetWeaver CVE-2025-31324.",
"fork": false,
"created_at": "2025-04-30T15:38:35Z",
"updated_at": "2025-04-30T17:26:34Z",
"pushed_at": "2025-04-30T17:26:31Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 975784634,
"name": "CVE-2025-31324",
"full_name": "JonathanStross\/CVE-2025-31324",
"owner": {
"login": "JonathanStross",
"id": 53238095,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/53238095?v=4",
"html_url": "https:\/\/github.com\/JonathanStross",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/JonathanStross\/CVE-2025-31324",
"description": "A Python-based security scanner for identifying the CVE-2025-31324 vulnerability in SAP Visual Composer systems, and detecting known Indicators of Compromise (IOCs) such as malicious .jsp.",
"fork": false,
"created_at": "2025-04-30T22:31:53Z",
"updated_at": "2025-04-30T23:15:03Z",
"pushed_at": "2025-04-30T23:00:17Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 976238071,
"name": "Onapsis-Mandiant-CVE-2025-31324-Vuln-Compromise-Assessment",
"full_name": "Onapsis\/Onapsis-Mandiant-CVE-2025-31324-Vuln-Compromise-Assessment",
"owner": {
"login": "Onapsis",
"id": 8865342,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/8865342?v=4",
"html_url": "https:\/\/github.com\/Onapsis",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/Onapsis\/Onapsis-Mandiant-CVE-2025-31324-Vuln-Compromise-Assessment",
"description": "CVE-2025-31324 vulnerability and compromise assessment tool",
"fork": false,
"created_at": "2025-05-01T18:44:20Z",
"updated_at": "2025-05-02T23:02:28Z",
"pushed_at": "2025-05-02T23:04:06Z",
"stargazers_count": 1,
"watchers_count": 1,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 1,
"score": 0,
"subscribers_count": 2
}
]