RULE(RULE ID:333656)

Rule General Information
Release Date: 2021-06-11
Rule Name: JD-FreeFuck Remote Code Execution Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: JD FreeFuck is a tool that helps users quickly obtain information such as JD coupons, rebates, and discounts. It has a backend command execution vulnerability, as there is no content filtering when passing parameters to execute commands, which allows arbitrary commands to be executed and control the server.
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.