Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Unauthenticated RCE on CraftCMS when PHP `register_argc_argv` config setting is enabled | https://github.com/Chocapikk/CVE-2024-56145 | POC Details |
| 2 | CVE-2024-56145 SSTI to RCE - twig templates | https://github.com/Sachinart/CVE-2024-56145-craftcms-rce | POC Details |
| 3 | A POC lab environment for CVE-2024-56145 CraftCMS RCE. | https://github.com/hmhlol/craft-cms-RCE-CVE-2024-56145 | POC Details |
| 4 | This template identifies a critical Remote Code Execution (RCE) vulnerability in Craft CMS, identified as GHSA-2p6p-9rc9-62j9. The vulnerability exists due to improper handling of the `--templatesPath` query parameter, allowing attackers to execute arbitrary code by referencing malicious Twig templates. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-56145.yaml | POC Details |
| 5 | None | https://github.com/Threekiii/Awesome-POC/blob/master/CMS%E6%BC%8F%E6%B4%9E/CraftCMS%20register_argc_argv%20%E8%BF%9C%E7%A8%8B%E4%BB%A3%E7%A0%81%E6%89%A7%E8%A1%8C%E6%BC%8F%E6%B4%9E%20CVE-2024-56145.md | POC Details |
| 6 | https://github.com/vulhub/vulhub/blob/master/craftcms/CVE-2024-56145/README.md | POC Details |
No public POC found.
Login to generate AI POCNo comments yet