VDB
CNVD-2025-17932
CNVD-2025-17932
PUBLISHED
1Panel是中国1Panel社区的一个开源的Linux服务器运维管理面板。 1Panel存在命令注入漏洞,该漏洞源于证书验证不完整,攻击者可利用该漏洞导致远程代码执行。
Exploit Intelligence
- CVE-2025-54424: 1Panel TLS client cert bypass enables RCE via forged CN 'panel_client' using a bundled scanning and exploitation tool. Affected: <= v2.0.5. 🔐 (github-poc-repo)
- CVE-2025-54424: 1Panel TLS client cert bypass enables RCE via forged CN 'panel_client' using a bundled scanning and exploitation tool. Affected: <= v2.0.5. 🔐 (github-poc-repo)
- anonnymous5/1Panel-CVE-2025-54424- (github-poc)
- anonnymous5/1Panel-CVE-2025-54424- (github-poc)
- CVE-2025-54424: 1Panel TLS client cert bypass enables RCE via forged CN 'panel_client' using a bundled scanning and exploitation tool. Affected: <= v2.0.5. 🔐 (github-poc)
- CVE-2025-54424: 1Panel TLS client cert bypass enables RCE via forged CN 'panel_client' using a bundled scanning and exploitation tool. Affected: <= v2.0.5. 🔐 (github-poc)
- CVE-2025-54424:1Panel 客户端证书绕过RCE漏洞 一体化工具 (扫描+利用) (github-poc)
- CVE-2025-54424:1Panel 客户端证书绕过RCE漏洞 一体化工具 (扫描+利用) (github-poc)
- ghost_report_20260112_192608.json (github-poc)
- ghost_report_20260112_192608.json (github-poc)
…and 4 more exploits
Timeline
- CVE Published