CVE-2017-1000117

HIGH

Malicious Git HTTP Server For CVE-2017-1000117

Title source: metasploit

Description

A malicious third-party can give a crafted "ssh://..." URL to an unsuspecting victim, and an attempt to visit the URL can result in any program that exists on the victim's machine being executed. Such a URL could be placed in the .gitmodules file of a malicious project, and an unsuspecting victim could be tricked into running "git clone --recurse-submodules" to trigger the vulnerability.

Exploits (28)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotepython
https://www.exploit-db.com/exploits/42599
nomisec WORKING POC 136 stars
by greymd · poc
https://github.com/greymd/CVE-2017-1000117
nomisec SUSPICIOUS 16 stars
by Manouchehri · poc
https://github.com/Manouchehri/CVE-2017-1000117
nomisec WORKING POC 7 stars
by timwr · poc
https://github.com/timwr/CVE-2017-1000117
nomisec WORKING POC 4 stars
by ieee0824 · poc
https://github.com/ieee0824/CVE-2017-1000117
nomisec WORKING POC 3 stars
by AnonymKing · poc
https://github.com/AnonymKing/CVE-2017-1000117
nomisec WORKING POC 3 stars
by VulApps · poc
https://github.com/VulApps/CVE-2017-1000117
gitlab WORKING POC 2 stars
by joernchen · poc
https://gitlab.com/joernchen/CVE-2017-1000117
github WORKING POC 2 stars
by BasyacatX · pythonpoc
https://github.com/BasyacatX/CVE-2024-32002-PoC_Chinese/tree/main/CVE-2017-1000117.rb
nomisec SUSPICIOUS 2 stars
by nkoneko · poc
https://github.com/nkoneko/CVE-2017-1000117
nomisec WORKING POC 1 stars
by leezp · poc
https://github.com/leezp/CVE-2017-1000117
nomisec STUB 1 stars
by sasairc · poc
https://github.com/sasairc/CVE-2017-1000117_wasawasa
gitlab WORKING POC
by pnigos · poc
https://gitlab.com/pnigos/CVE-2017-1000117
gitlab SUSPICIOUS
by hrnry · poc
https://gitlab.com/hrnry/CVE-2017-1000117
nomisec WORKING POC
by Jerry-zhuang · poc
https://github.com/Jerry-zhuang/CVE-2017-1000117
nomisec STUB
by cved-sources · poc
https://github.com/cved-sources/cve-2017-1000117
nomisec SUSPICIOUS
by chu1337 · poc
https://github.com/chu1337/CVE-2017-1000117
nomisec WORKING POC
by siling2017 · poc
https://github.com/siling2017/CVE-2017-1000117
nomisec WORKING POC
by thelastbyte · poc
https://github.com/thelastbyte/CVE-2017-1000117
nomisec STUB
by chenzhuo0618 · poc
https://github.com/chenzhuo0618/test
nomisec WORKING POC
by Shadow5523 · poc
https://github.com/Shadow5523/CVE-2017-1000117-test
nomisec STUB
by takehaya · poc
https://github.com/takehaya/CVE-2017-1000117
nomisec WORKING POC
by shogo82148 · poc
https://github.com/shogo82148/Fix-CVE-2017-1000117
nomisec WORKING POC
by ikmski · poc
https://github.com/ikmski/CVE-2017-1000117
nomisec STUB
by ieee0824 · poc
https://github.com/ieee0824/CVE-2017-1000117-sl
nomisec SUSPICIOUS
by rootclay · poc
https://github.com/rootclay/CVE-2017-1000117
nomisec NO CODE
by alilangtest · poc
https://github.com/alilangtest/CVE-2017-1000117
metasploit WORKING POC EXCELLENT
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/http/git_submodule_command_exec.rb

Scores

CVSS v3 8.8
EPSS 0.7643
EPSS Percentile 98.9%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-601
Status published
Products (28)
git-scm/git 2.8.0 (5 CPE variants)
git-scm/git 2.8.1
git-scm/git 2.8.2
git-scm/git 2.8.3
git-scm/git 2.8.4
git-scm/git 2.8.5
git-scm/git 2.9.0 (4 CPE variants)
git-scm/git 2.9.1
git-scm/git 2.9.2
git-scm/git 2.9.3
... and 18 more
Published Oct 05, 2017
Tracked Since Feb 18, 2026