Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

add poc-yaml-vite-path-traversal #1629

Closed
wants to merge 1 commit into from
Closed

Conversation

rootarcher
Copy link

本 poc 是检测什么漏洞的

vite目录穿越,针对2820和8498两个漏洞进行了合并编写(8498为2820的绕过),也针对windows环境进行了测试。
vitejs/vite#2820
vitejs/vite#8498

测试环境

  1. docker pull ifirmawan/vitejs

  2. 也可通过npm直接搭建

npm init @vitejs/app app
cd app
npm install
npm run dev

备注

@mashiro01
Copy link
Collaborator

感谢师傅的提交,这里将作为poc-yaml-vite-cnvd-2022-44615的补充进行更新。后续如果需要提交poc相关内容的话可以参考readme中相关内容到ct stack社区进行提交。

@mashiro01 mashiro01 closed this Dec 27, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants