bl-kernel/security.class.php in Bludit 3.9.2 allows attackers to bypass a brute-force protection mechanism by using many different forged X-Forwarded-For or Client-IP HTTP headers.
PoC: CVE-2019-17240
This is the exploit of CVE-2019-17240.
PoC: CVE-2019-17240
CVE-2019-17240 - Bludit 3.9.2 Authentication Bypass
PoC: Bludit-3.9.2-Auth-Bruteforce-Bypass-CVE-2019-17240
Bludit 3.9.2 - Auth Bruteforce Bypass CVE:2019-17240 Refurbish In bash
PoC: CVE-2019-17240
Bludit 3.9.2 auth bruteforce bypass
PoC: bloodit
Bludit 3.9.2 - Auth Brute Force Mitigation Bypass. CVE-2019-17240
PoC: bludit-CVE-2019-17240
Bypass bludit mitigation login form and upload malicious to call a rev shell
PoC: CVE-2019-17240_Bludit-BF-Bypass
Bludit <= 3.9.2 - Authentication Bruteforce Mitigation Bypass Exploit/PoC
PoC: Bludit-CVE-2019-17240-Fork
Better version of rastating.github.io/bludit-brute-force-mitigation-bypass/
PoC: Bludit-3-9-2-bb
Bludit 3.9.2 - bruteforce bypass - CVE-2019-17240
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Get alerted for CVEs like this
Register your stack and get notified within minutes when a matching CVE drops.
Start monitoring free