Skip to content

Bludit 3.9.2 - Remote command execution - CVE-2019-16113

Notifications You must be signed in to change notification settings

0xConstant/CVE-2019-16113

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

4 Commits
 
 
 
 

Repository files navigation

Bludit 3.9.2 - Remote command execution - CVE-2019-16113

This exploit combines two exploits in Bludit CMS 3.9.2 to gain remote code execution on the target system.

The original exploits are CVE-2019-17240 & CVE-2019-16113.

Features

  • Bruteforce password + RCE
  • Bruteforce username:password + RCE

Reproduce

  • Setup Bludit 3.9.2 CMS
  • Configure login details
  • run the exploit:
python3 poc.py

About

Bludit 3.9.2 - Remote command execution - CVE-2019-16113

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages