CVE-2023-5043
HIGHingress-nginx < 1.9.0 - OS Command Injection via Annotation
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2023-5043. PoCs published by r0binak.
AI-analyzed exploit summary This repository provides a functional proof-of-concept exploit for CVE-2023-5043, demonstrating arbitrary command execution via ingress nginx annotation injection. The exploit leverages a maliciously crafted configuration snippet to execute commands through a Lua block.
Description
Ingress nginx annotation injection causes arbitrary command execution.
Exploits (1)
This repository provides a functional proof-of-concept exploit for CVE-2023-5043, demonstrating arbitrary command execution via ingress nginx annotation injection. The exploit leverages a maliciously crafted configuration snippet to execute commands through a Lua block.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L