Improper neutralization of user data in the DjVu file format in ExifTool versions 7.44 and up allows arbitrary code execution when parsing the malicious image
- http://packetstormsecurity.com/files/162558/ExifTool-DjVu-ANT-Perl-Injection.html
- http://packetstormsecurity.com/files/164768/GitLab-Unauthenticated-Remote-ExifTool-Command-Injection.html
- http://packetstormsecurity.com/files/164994/GitLab-13.10.2-Remote-Code-Execution.html
- http://www.openwall.com/lists/oss-security/2021/05/10/5
- https://github.com/0xsyr0/OSCP
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Al1ex/CVE-2021-22205
- https://github.com/Asaad27/CVE-2021-22204-RSE
- https://github.com/AssassinUKG/CVE-2021-22204
- https://github.com/CsEnox/Gitlab-Exiftool-RCE
- https://github.com/EdgeSecurityTeam/Vulnerability
- https://github.com/Konstantinos-Papanagnou/CMSpit
- https://github.com/PenTestical/CVE-2021-22204
- https://github.com/SexyBeast233/SecBooks
- https://github.com/bilkoh/POC-CVE-2021-22204
- https://github.com/binganao/vulns-2022
- https://github.com/convisolabs/CVE-2021-22204-exiftool
- https://github.com/devdanqtuan/CVE-2021-22205
- https://github.com/gkhan496/WDIR
- https://github.com/harsh-bothra/learn365
- https://github.com/hongson97/ctf-challenges
- https://github.com/htrgouvea/research
- https://github.com/mr-r3bot/Gitlab-CVE-2021-22205
- https://github.com/nomi-sec/PoC-in-GitHub
- https://github.com/oneoy/Gitlab-Exiftool-RCE
- https://github.com/ph-arm/CVE-2021-22204-Gitlab
- https://github.com/pizza-power/Golang-CVE-2021-22205-POC
- https://github.com/runsel/GitLab-CVE-2021-22205-
- https://github.com/se162xg/CVE-2021-22204
- https://github.com/star-sg/CVE
- https://github.com/szTheory/exifcleaner
- https://github.com/trganda/CVE-2021-22204
- https://github.com/tzwlhack/Vulnerability