-
Notifications
You must be signed in to change notification settings - Fork 3.2k
Description
Description:
Lanscope Endpoint Manager (On-Premises) contains a remote code execution vulnerability caused by improper verification of the origin of incoming requests, letting attackers execute arbitrary code remotely, exploit requires sending specially crafted packets.
Severity: Critical
POC:
KEV: True
Shodan Query: NA
Acceptance Criteria: The template must include a complete POC and should not rely solely on version-based detection. Contributors are required to provide debug data(
-debug) along with the template to help the triage team with validation or can also share a vulnerable environment like docker file.
Rewards will only be given once the template is fully validated by the team. Templates that are incomplete or invalid will not be accepted. Avoid adding code templates for CVEs that can be achieved using HTTP, TCP, or JavaScript. Such templates are blocked by default and won’t produce results, so we prioritize creating templates with other protocols unless exceptions are made.
You can check the FAQ for the Nuclei Templates Community Rewards Program here.
Activity
princechaddha commentedon Oct 27, 2025
/bounty $100
algora-pbc commentedon Oct 27, 2025
💎 $100 bounty • ProjectDiscovery Bounty Available for CVE Template Contribution
Steps to Contribute:
/attempt #13724on this issue to claim attempt. Multiple participants can attempt, but only the first to submit a complete POC template along with full debug data will receive the reward similar to bug bounty programs.#13724in the PR body to claim the bounty.Thank you for contributing to projectdiscovery/nuclei-templates and helping us democratize security!
You can check the FAQ for the Nuclei Templates Community Rewards Program here.
Add a bounty • Share on socials
Pranjal6955 commentedon Oct 28, 2025
/attempt #13724
kris70lesgo commentedon Nov 6, 2025
/attempt #13724
Bot-GJ16 commentedon Nov 9, 2025
/attempt #13724
intelligent-ears commentedon Nov 10, 2025
/attempt #13724
nikhilpatidar01 commentedon Nov 12, 2025
/attempt #13724