References https://nvd.nist.gov/vuln/detail/CVE-2024-2054 https://www.sentinelone.com/vulnerability-database/cve-2024-2054/ https://www.exploit-db.com/exploits/52146 https://github.com/Madan301/CVE-2024-2054 https://korelogic.com/advisories/KL-001-2024-002 https://wiki.articatech.com/maintenance/security/CVE-2024-2054 https://www.tenable.com/cve/CVE-2024-2054 https://www.sonicwall.com/blog/unpatched-php-deserialization-vulnerability-in-artica-proxy https://attackerkb.com/topics/q1JUcEJjXZ/cve-2024-2054 https://www.cybersecurity-help.cz/vdb/SB2024043002 https://feedly.com/cve/CVE-2024-2054 https://www.rapid7.com/db/modules/exploit/linux/http/artica_proxy_unauth_rce_cve_2024_2054/
Related VulnerabilitiesPoCCVE-2026-23693: ElementsKit Lite <3.7.9 - Unauthenticated Mailchimp ProxyPoCCVE-2026-20896: Gitea Docker Image <= 1.26.2 - Reverse Proxy Header Authentication BypassPoCCVE-2025-26399: SolarWinds Web Help Desk < 12.8.7 - AjaxProxy Deserialization RCELobeChat /webapi/proxy 服务器端请求伪造漏洞(CVE-2026-54157)东胜物流软件 /PriceCarrier/CrmProxyMailListHtmlGridSource.aspx SQL 注入漏洞关于用友GRP-U8Cloud产品getBudgetReleaseProjectList及U8AppProxy及fbpm-modeler存在命令执行漏洞的安全通告UniFi Network Application /guest/s/default/login 目录遍历漏洞(CVE-2026-22557)PoCCVE-2026-22557: UniFi Network Application - Path TraversalApache Druid /proxy/coordinator@ 服务器端请求伪造漏洞(CVE-2025-27888)Gradio /proxy 服务器端请求伪造漏洞(CVE-2023-34239)PoCCVE-2025-62168: Squid Proxy - HTTP Authentication Credentials DisclosurePoClitellm-unauth-model-exposure: LiteLLM Proxy - Model ExposureArtica Proxy /images.listener.php 文件读取漏洞(CVE-2024-2053)