Sploitus

Exploit for Improper Encoding or Escaping of Output in F5 Nginx

gitee · 2020-05-07

Exploit Code

MARKDOWN10 lines
## https://sploitus.com/exploit?id=F7A1CD41-EF23-54A4-8C06-B0AD59DAE8BB
It is an offensive tool for Docker environments. The primary CVE ID is not explicitly mentioned, but the repository contains various vulnerable environments based on Docker-Compose, including CVE-2016-9086, CVE-2013-4547, CVE-2017-1000353, and CVE-2018-1000006. 

The target product/service is Docker and Docker-Compose, with the vulnerability class being various types of vulnerabilities such as SSTI, RCE, and deserialization. The probable entry points are the Docker Compose files, and the execution context is the Docker environment. 

The preconditions for exploitation are not explicitly stated, but the repository provides instructions for installation and usage. The expected impact of the vulnerabilities is not specified, but the repository provides information on how to exploit the vulnerabilities. 

The repository contains various Docker Compose files for different vulnerable environments, including Flask SSTI, Apache Parsing Vulnerability, and Jenkins. The repository also contains instructions for installation and usage, as well as information on how to exploit the vulnerabilities. 

The repository is maintained by phith0n and is hosted on GitHub. The repository has a large number of stars and is widely used in the security community. The repository is open-source and free to use, with a permissive license that