Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2022-24086 PoC — Adobe Commerce checkout improper input validation leads to remote code execution

Source
Associated Vulnerability
Title:Adobe Commerce checkout improper input validation leads to remote code execution (CVE-2022-24086)
Description:Adobe Commerce versions 2.4.3-p1 (and earlier) and 2.3.7-p2 (and earlier) are affected by an improper input validation vulnerability during the checkout process. Exploitation of this issue does not require user interaction and could result in arbitrary code execution.
Readme
# CVE-2022-24086-RCE
CVE-2022-24086 Exploitation tool written in Python 3 compatible with lists of URL/IPs. This download includes a list of over 334,300 potentially vulnerable hosts according to shodan.io and personal scans.
This tool is NOT free to prevent abuse. As of now patches are being applied but the majority of systems aren't patched.

**We put up 4 limited copies for sale, available at: https://satoshidisk.com/pay/CEtVaB**

## Requirements
> sudo apt-get install python3 python3-pip
>
> pip3 install requests

![Magento](https://user-images.githubusercontent.com/101390984/158311160-0c60d4d7-7f28-403f-bf2f-8a06045c9fc0.png)
## Statistics
[CVE-2022-24086](https://www.cvedetails.com/cve/CVE-2022-24086/) vulnerability scores a 10 out of 10 on severity scale. In this kit we included a scan of ours coupled with results from SHODAN.IO into a list of over 334,300 hosts that may be vulnerable.

File Snapshot

[4.0K] /data/pocs/6726be9e3b666b75e3e2a37dfb3e409f6dd3659c └── [ 907] README.md 0 directories, 1 file
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →