GITHUBEXPLOIT 9.8 CRITICAL

Exploit for Command Injection in Fit2Cloud 1Panel_34F47416-4A46-527F-9B71-DDB3B6B09738

9.8 / 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Description

CVE-2025-54424 CVE-2025-54424:1Panel 客户端证书绕过RCE漏洞 一体化工具 扫描+利用 漏洞简介 1Panel 是一个开源、现代化的 Linux 运维管理面板,提供图形化界面用于部署网站、管理服务器和运行服务。 受影响版本中,Agent 端 TLS 认证策略为 tls.RequireAnyClientCert,仅要求提供证书但不验证其可信性。攻击者可通过自签名证书绕过 TLS...
Visit Original Source

Basic Information

ID 34F47416-4A46-527F-9B71-DDB3B6B09738
Published Dec 27, 2025 at 13:31
Modified Dec 27, 2025 at 13:32

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.