CVE-2024-27348 Apache HugeGraph Server RCE Scanner
The Scanner will run 4 commands on the target (host,ping,curl,wget), As in case one of the utilities not found.
You can read the analysis for the vulnerability from here: https://blog.securelayer7.net/remote-code-execution-in-apache-hugegraph/
Query:
Hunter: /product.name="Apache HugeGraph"
FOFA: app="HugeGraph-Studio"
SHODAN: http.title:"HugeGraph"
The Scanner will run 4 commands on the target (host,ping,curl,wget), As in case one of the utilities not found.
You can read the analysis for the vulnerability from here: https://blog.securelayer7.net/remote-code-execution-in-apache-hugegraph/
Query:
Hunter: /product.name="Apache HugeGraph"
FOFA: app="HugeGraph-Studio"
SHODAN: http.title:"HugeGraph"