/CVE-2023-27372

Perform With Mass Remote Code Execution In SPIP Version (4.2.1)

Primary LanguagePython

CVE-2023-27372

  • The vulnerability exists in the oubli parameter and allows an unauthenticated user to execute arbitrary commands with web user privileges. Branches 3.2, 4.0, 4.1 and 4.2 are concerned. Vulnerable versions are below 3.2.18, below 4.0.10, below 4.1.18 and below 4.2.1.

Screenshot

Screenshot_4 Screenshot_5

Requirements

  • Python3.7+

Supported Os

  • Linuxer
  • Wingays

Get start with

$ git clone https://github.com/Pari-Malam/CVE-2023-27372
$ cd CVE-2023-27372
$ pip/pip3 install -r requirements.txt
$ python/python3 spip.py

Footprints Notes

  • By using this tool, you agree that you are using it for educational purposes only and that you will not use it for any illegal activity. You also agree to bear all risks associated with the use of this tool. I will not be responsible for direct or indirect damage caused by the use of this tool. Don't suyyyyyyyyyyyyyyyyyyyy me!

Author

  • Pari Malam

Contacts

Telegram Discord