Add CVE triage and disposition artifacts for scan hits

This commit is contained in:
beatz174-bit
2026-04-13 10:38:15 +10:00
parent 7817122265
commit 60c1719b6d
18 changed files with 818 additions and 0 deletions
@@ -0,0 +1,30 @@
{
"host": "kuma.lan.ddnsgeek.com",
"generated_at": "2026-04-07T03:49:38.723646+00:00",
"required_reproduction_step_before_ticket": "Before creating a ticket, reproduce vulnerable behavior directly (e.g., crafted request causing data exposure, traversal read, or exploitable crash) and attach request/response proof. Banner or script signature matches alone are insufficient.",
"findings": [
{
"host": "kuma.lan.ddnsgeek.com",
"cve": "CVE-2017-9798",
"affected_host": "kuma.lan.ddnsgeek.com",
"endpoint": "unknown",
"product_version_evidence": [
"http syn-ack ttl 52 Golang net/http server (Go-IPFS json-rpc or InfluxDB API)",
"http syn-ack ttl 53 Golang net/http server (Go-IPFS json-rpc or InfluxDB API)",
"ssl/http syn-ack ttl 52 Golang net/http server (Go-IPFS json-rpc or InfluxDB API)",
"ssl/http syn-ack ttl 53 Golang net/http server (Go-IPFS json-rpc or InfluxDB API)"
],
"exploit_precondition": "Target must run Apache HTTP Server with mod_http2 and be susceptible to OptionBleed conditions.",
"reproducibility": "not-reproduced",
"disposition": "needs-manual-test",
"disposition_rationale": "Signature-based identification only; exploitability depends on module/configuration and requires targeted validation.",
"required_reproduction_step_before_ticket": "Before creating a ticket, reproduce vulnerable behavior directly (e.g., crafted request causing data exposure, traversal read, or exploitable crash) and attach request/response proof. Banner or script signature matches alone are insufficient.",
"evidence_sources": [
{
"file": "results/kuma.lan.ddnsgeek.com/scans/_patterns.log",
"match_count": 31
}
]
}
]
}