Exploitation Summary
EIP tracks 2 public exploits for CVE-2025-50505. PoCs published by a0yami, bron1e.
AI-analyzed exploit summary This repository provides a detailed technical analysis of CVE-2025-50505, an unauthenticated API vulnerability in Clash Verge Rev that allows arbitrary command execution and privilege escalation. It includes exploitation vectors for both local privilege escalation and remote code execution via LAN or DNS rebinding attacks.
Description
Clash Verge Rev thru 2.2.3 (fixed in 2.3.0) forces the installation of system services(clash-verge-service) by default and exposes key functions through the unauthorized HTTP API `/start_clash`, allowing local users to submit arbitrary bin_path parameters and pass them directly to the service process for execution, resulting in local privilege escalation.
Exploits (2)
This repository provides a detailed technical analysis of CVE-2025-50505, an unauthenticated API vulnerability in Clash Verge Rev that allows arbitrary command execution and privilege escalation. It includes exploitation vectors for both local privilege escalation and remote code execution via LAN or DNS rebinding attacks.
This repository provides a detailed technical analysis of CVE-2025-50505, an unauthenticated API vulnerability in Clash Verge Rev that allows arbitrary command execution and privilege escalation. It includes root cause analysis, vulnerable code snippets, and exploitation vectors for both local and remote scenarios.
References (5)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H