Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2019-5737 PoC — Joyent Node.js 资源管理错误漏洞

Source
Associated Vulnerability
Title:Joyent Node.js 资源管理错误漏洞 (CVE-2019-5737)
Description:In Node.js including 6.x before 6.17.0, 8.x before 8.15.1, 10.x before 10.15.2, and 11.x before 11.10.1, an attacker can cause a Denial of Service (DoS) by establishing an HTTP or HTTPS connection in keep-alive mode and by sending headers very slowly. This keeps the connection and associated resources alive for a long period of time. Potential attacks are mitigated by the use of a load balancer or other proxy layer. This vulnerability is an extension of CVE-2018-12121, addressed in November and impacts all active Node.js release lines including 6.x before 6.17.0, 8.x before 8.15.1, 10.x before 10.15.2, and 11.x before 11.10.1.
File Snapshot

[4.0K] /data/pocs/b1b78c8715bae968235f2b14c2fc9c98ebdb5b09 ├── [1.8K] c2.c ├── [1.8K] Dockerfile ├── [ 27K] netcat.c ├── [2.4K] payloadset.c ├── [6.1K] payloadstage.c └── [ 254] README.txt 0 directories, 6 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →