PoC-in-GitHub/2025/CVE-2025-31324.json
2025-12-05 21:44:26 +09:00

609 lines
No EOL
22 KiB
JSON

[
{
"id": 972739684,
"name": "CVE-2025-31324",
"full_name": "rxerium\/CVE-2025-31324",
"owner": {
"login": "rxerium",
"id": 59293085,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/59293085?v=4",
"html_url": "https:\/\/github.com\/rxerium",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/rxerium\/CVE-2025-31324",
"description": "SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially malicious executable binaries that could severely harm the host system. This could significantly affect the confidentiality, integrity, and availability of the targeted system.",
"fork": false,
"created_at": "2025-04-25T15:22:59Z",
"updated_at": "2025-10-14T06:43:39Z",
"pushed_at": "2025-10-14T06:43:35Z",
"stargazers_count": 5,
"watchers_count": 5,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [
"cybersecurity",
"netweaver",
"sap",
"vulnerability",
"zero-day"
],
"visibility": "public",
"forks": 0,
"watchers": 5,
"score": 0,
"subscribers_count": 1
},
{
"id": 973620962,
"name": "CVE-2025-31324",
"full_name": "redrays-io\/CVE-2025-31324",
"owner": {
"login": "redrays-io",
"id": 89958617,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/89958617?v=4",
"html_url": "https:\/\/github.com\/redrays-io",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/redrays-io\/CVE-2025-31324",
"description": "CVE-2025-31324, SAP Exploit",
"fork": false,
"created_at": "2025-04-27T11:39:26Z",
"updated_at": "2025-12-05T10:47:33Z",
"pushed_at": "2025-04-28T05:01:55Z",
"stargazers_count": 22,
"watchers_count": 22,
"has_discussions": false,
"forks_count": 4,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 4,
"watchers": 22,
"score": 0,
"subscribers_count": 1
},
{
"id": 973743589,
"name": "Onapsis_CVE-2025-31324_Scanner_Tools",
"full_name": "Onapsis\/Onapsis_CVE-2025-31324_Scanner_Tools",
"owner": {
"login": "Onapsis",
"id": 8865342,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/8865342?v=4",
"html_url": "https:\/\/github.com\/Onapsis",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/Onapsis\/Onapsis_CVE-2025-31324_Scanner_Tools",
"description": null,
"fork": false,
"created_at": "2025-04-27T16:40:45Z",
"updated_at": "2025-09-24T18:53:21Z",
"pushed_at": "2025-06-06T15:11:23Z",
"stargazers_count": 11,
"watchers_count": 11,
"has_discussions": false,
"forks_count": 3,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 3,
"watchers": 11,
"score": 0,
"subscribers_count": 2
},
{
"id": 973916204,
"name": "CVE-2025-31324",
"full_name": "moften\/CVE-2025-31324",
"owner": {
"login": "moften",
"id": 4262359,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/4262359?v=4",
"html_url": "https:\/\/github.com\/moften",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/moften\/CVE-2025-31324",
"description": "SAP PoC para CVE-2025-31324",
"fork": false,
"created_at": "2025-04-28T01:32:39Z",
"updated_at": "2025-05-06T20:47:40Z",
"pushed_at": "2025-05-06T20:37:41Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [
"cve-2025-31324",
"netweaver",
"sap"
],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 973919514,
"name": "CVE-2025-31324-NUCLEI",
"full_name": "moften\/CVE-2025-31324-NUCLEI",
"owner": {
"login": "moften",
"id": 4262359,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/4262359?v=4",
"html_url": "https:\/\/github.com\/moften",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/moften\/CVE-2025-31324-NUCLEI",
"description": "Nuclei template for cve-2025-31324 (SAP)",
"fork": false,
"created_at": "2025-04-28T01:43:22Z",
"updated_at": "2025-10-09T09:56:37Z",
"pushed_at": "2025-04-28T01:49:33Z",
"stargazers_count": 1,
"watchers_count": 1,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 1,
"score": 0,
"subscribers_count": 1
},
{
"id": 974239532,
"name": "SAP-CVE-2025-31324",
"full_name": "Alizngnc\/SAP-CVE-2025-31324",
"owner": {
"login": "Alizngnc",
"id": 52749488,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/52749488?v=4",
"html_url": "https:\/\/github.com\/Alizngnc",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/Alizngnc\/SAP-CVE-2025-31324",
"description": "SAP NetWeaver Unauthenticated Remote Code Execution",
"fork": false,
"created_at": "2025-04-28T13:19:54Z",
"updated_at": "2025-04-28T13:52:18Z",
"pushed_at": "2025-04-28T13:52:14Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 974468141,
"name": "CVE-2025-31324_PoC",
"full_name": "ODST-Forge\/CVE-2025-31324_PoC",
"owner": {
"login": "ODST-Forge",
"id": 177167851,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/177167851?v=4",
"html_url": "https:\/\/github.com\/ODST-Forge",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/ODST-Forge\/CVE-2025-31324_PoC",
"description": "Proof-of-Concept for CVE-2025-31324: Unauthenticated upload in SAP NetWeaver Visual Composer Metadata Uploader",
"fork": false,
"created_at": "2025-04-28T20:32:21Z",
"updated_at": "2025-08-04T08:53:27Z",
"pushed_at": "2025-04-28T21:23:57Z",
"stargazers_count": 5,
"watchers_count": 5,
"has_discussions": false,
"forks_count": 2,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 2,
"watchers": 5,
"score": 0,
"subscribers_count": 0
},
{
"id": 974544679,
"name": "CVE-2025-31324_PoC_SAP",
"full_name": "abrewer251\/CVE-2025-31324_PoC_SAP",
"owner": {
"login": "abrewer251",
"id": 150287770,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/150287770?v=4",
"html_url": "https:\/\/github.com\/abrewer251",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/abrewer251\/CVE-2025-31324_PoC_SAP",
"description": "Proof-of-Concept for CVE-2025-31324: Unauthenticated upload in SAP NetWeaver Visual Composer Metadata Uploader",
"fork": false,
"created_at": "2025-04-29T00:16:06Z",
"updated_at": "2025-04-29T00:18:05Z",
"pushed_at": "2025-04-29T00:18:02Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 1,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 1,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 975332660,
"name": "Burp_CVE-2025-31324",
"full_name": "BlueOWL-overlord\/Burp_CVE-2025-31324",
"owner": {
"login": "BlueOWL-overlord",
"id": 204598752,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/204598752?v=4",
"html_url": "https:\/\/github.com\/BlueOWL-overlord",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/BlueOWL-overlord\/Burp_CVE-2025-31324",
"description": "Python-based Burp Suite extension is designed to detect the presence of CVE-2025-31324",
"fork": false,
"created_at": "2025-04-30T06:34:12Z",
"updated_at": "2025-05-01T17:30:51Z",
"pushed_at": "2025-05-01T17:30:47Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 975542488,
"name": "CVE-2025-31324-File-Upload",
"full_name": "nullcult\/CVE-2025-31324-File-Upload",
"owner": {
"login": "nullcult",
"id": 63312212,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/63312212?v=4",
"html_url": "https:\/\/github.com\/nullcult",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/nullcult\/CVE-2025-31324-File-Upload",
"description": "A totally unauthenticated file-upload endpoint in Visual Composer lets anyone drop arbitrary files (e.g., a JSP web-shell) onto the server.",
"fork": false,
"created_at": "2025-04-30T13:39:30Z",
"updated_at": "2025-05-05T12:22:22Z",
"pushed_at": "2025-04-30T13:41:30Z",
"stargazers_count": 1,
"watchers_count": 1,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 1,
"score": 0,
"subscribers_count": 1
},
{
"id": 975607640,
"name": "jsp-webshell-scanner",
"full_name": "respondiq\/jsp-webshell-scanner",
"owner": {
"login": "respondiq",
"id": 209808385,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/209808385?v=4",
"html_url": "https:\/\/github.com\/respondiq",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/respondiq\/jsp-webshell-scanner",
"description": "🔍 A simple Bash script to detect malicious JSP webshells, including those used in exploits of SAP NetWeaver CVE-2025-31324.",
"fork": false,
"created_at": "2025-04-30T15:38:35Z",
"updated_at": "2025-11-03T15:52:49Z",
"pushed_at": "2025-04-30T17:26:31Z",
"stargazers_count": 1,
"watchers_count": 1,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 1,
"score": 0,
"subscribers_count": 1
},
{
"id": 975784634,
"name": "CVE-2025-31324",
"full_name": "JonathanStross\/CVE-2025-31324",
"owner": {
"login": "JonathanStross",
"id": 53238095,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/53238095?v=4",
"html_url": "https:\/\/github.com\/JonathanStross",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/JonathanStross\/CVE-2025-31324",
"description": "A Python-based security scanner for identifying the CVE-2025-31324 vulnerability in SAP Visual Composer systems, and detecting known Indicators of Compromise (IOCs) such as malicious .jsp.",
"fork": false,
"created_at": "2025-04-30T22:31:53Z",
"updated_at": "2025-09-04T01:54:32Z",
"pushed_at": "2025-05-06T22:08:18Z",
"stargazers_count": 1,
"watchers_count": 1,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 1,
"score": 0,
"subscribers_count": 1
},
{
"id": 976238071,
"name": "Onapsis-Mandiant-CVE-2025-31324-Vuln-Compromise-Assessment",
"full_name": "Onapsis\/Onapsis-Mandiant-CVE-2025-31324-Vuln-Compromise-Assessment",
"owner": {
"login": "Onapsis",
"id": 8865342,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/8865342?v=4",
"html_url": "https:\/\/github.com\/Onapsis",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/Onapsis\/Onapsis-Mandiant-CVE-2025-31324-Vuln-Compromise-Assessment",
"description": "CVE-2025-31324 & CVE-2025-42999 vulnerability and compromise assessment tool",
"fork": false,
"created_at": "2025-05-01T18:44:20Z",
"updated_at": "2025-12-04T22:25:26Z",
"pushed_at": "2025-06-06T15:09:01Z",
"stargazers_count": 8,
"watchers_count": 8,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [
"cve-2025-31324",
"cve-2025-42999",
"insecure-deserialization",
"missing-authorization-check",
"sap-netweaver",
"security-tools",
"vcframework"
],
"visibility": "public",
"forks": 0,
"watchers": 8,
"score": 0,
"subscribers_count": 3
},
{
"id": 978888751,
"name": "sap_netweaver_cve-2025-31324-",
"full_name": "rf-peixoto\/sap_netweaver_cve-2025-31324-",
"owner": {
"login": "rf-peixoto",
"id": 50427765,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/50427765?v=4",
"html_url": "https:\/\/github.com\/rf-peixoto",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/rf-peixoto\/sap_netweaver_cve-2025-31324-",
"description": "Research Purposes only",
"fork": false,
"created_at": "2025-05-06T16:58:35Z",
"updated_at": "2025-05-24T01:51:05Z",
"pushed_at": "2025-05-07T11:13:30Z",
"stargazers_count": 5,
"watchers_count": 5,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 5,
"score": 0,
"subscribers_count": 1
},
{
"id": 979192598,
"name": "CVE-2025-31324",
"full_name": "NULLTRACE0X\/CVE-2025-31324",
"owner": {
"login": "NULLTRACE0X",
"id": 210199424,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/210199424?v=4",
"html_url": "https:\/\/github.com\/NULLTRACE0X",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/NULLTRACE0X\/CVE-2025-31324",
"description": null,
"fork": false,
"created_at": "2025-05-07T06:23:09Z",
"updated_at": "2025-11-15T19:36:15Z",
"pushed_at": "2025-05-12T16:55:10Z",
"stargazers_count": 9,
"watchers_count": 9,
"has_discussions": false,
"forks_count": 3,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 3,
"watchers": 9,
"score": 0,
"subscribers_count": 1
},
{
"id": 979720194,
"name": "nuclei-template-cve-2025-31324-check",
"full_name": "nairuzabulhul\/nuclei-template-cve-2025-31324-check",
"owner": {
"login": "nairuzabulhul",
"id": 7432202,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/7432202?v=4",
"html_url": "https:\/\/github.com\/nairuzabulhul",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/nairuzabulhul\/nuclei-template-cve-2025-31324-check",
"description": "sap-netweaver-cve-2025-31324-check",
"fork": false,
"created_at": "2025-05-08T00:57:36Z",
"updated_at": "2025-10-09T09:32:50Z",
"pushed_at": "2025-05-08T01:14:36Z",
"stargazers_count": 1,
"watchers_count": 1,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 1,
"score": 0,
"subscribers_count": 1
},
{
"id": 981284972,
"name": "CVE-2025-31324",
"full_name": "sug4r-wr41th\/CVE-2025-31324",
"owner": {
"login": "sug4r-wr41th",
"id": 136193030,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/136193030?v=4",
"html_url": "https:\/\/github.com\/sug4r-wr41th",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/sug4r-wr41th\/CVE-2025-31324",
"description": "SAP NetWeaver Visual Composer Metadata Uploader <= 7.50 CVE-2025-31324 PoC",
"fork": false,
"created_at": "2025-05-10T18:52:46Z",
"updated_at": "2025-06-18T19:00:53Z",
"pushed_at": "2025-06-18T19:00:28Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 1,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 1,
"watchers": 0,
"score": 0,
"subscribers_count": 1
},
{
"id": 1038657114,
"name": "sap-netweaver-0day-CVE-2025-31324",
"full_name": "antichainalysis\/sap-netweaver-0day-CVE-2025-31324",
"owner": {
"login": "antichainalysis",
"id": 196148785,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/196148785?v=4",
"html_url": "https:\/\/github.com\/antichainalysis",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/antichainalysis\/sap-netweaver-0day-CVE-2025-31324",
"description": "sap netweaver 0day poc by shinyhunters (scattered lapsus$ hunters) affecting all 7.x CVE-2025-31324",
"fork": false,
"created_at": "2025-08-15T15:45:43Z",
"updated_at": "2025-11-09T23:51:54Z",
"pushed_at": "2025-08-15T15:54:13Z",
"stargazers_count": 18,
"watchers_count": 18,
"has_discussions": false,
"forks_count": 2,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 2,
"watchers": 18,
"score": 0,
"subscribers_count": 0
},
{
"id": 1041207732,
"name": "CVE-2025-31324-Exploits",
"full_name": "harshitvarma05\/CVE-2025-31324-Exploits",
"owner": {
"login": "harshitvarma05",
"id": 90782285,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/90782285?v=4",
"html_url": "https:\/\/github.com\/harshitvarma05",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/harshitvarma05\/CVE-2025-31324-Exploits",
"description": null,
"fork": false,
"created_at": "2025-08-20T06:30:07Z",
"updated_at": "2025-08-31T21:24:53Z",
"pushed_at": "2025-08-31T21:24:50Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 0
}
]