Sploitus

CVE-2021-3129

37 known exploits for CVE-2021-3129

Ignition before 2.5.2, as used in Laravel and other products, allows unauthenticated remote attackers to execute arbitrary code because of insecure usage of file_get_contents() and file_put_contents(). This is exploitable on sites using debug mode with Laravel before 8.4.2.

Affected products
Ignition, Laravel
Facade Ignition
< 2.5.2
Fix
Available
CVSS 3.1
9.8 CRITICAL
EPSS
99.9% (100th percentile)
NVD status
Analyzed
Published
2021-01-12
CVE-2021-3129 at NVD
Authoritative description, scoring and affected products

37 known exploits for CVE-2021-3129

Proof-of-concept code and exploit modules indexed by Sploitus

Exploit for CVE-2021-3129
2026-08-07 GiangdurianGITHUB
Exploit for CVE-2021-3129
2026-02-12 Nullsecur1tyGITHUB
Exploit for CVE-2021-3129
2026-01-30 crypt0lithGITHUB
Exploit for CVE-2021-3129
2024-09-29 0x0d3adGITHUB
Exploit for CVE-2021-3129
2024-05-19 cc3305GITHUB
Exploit for CVE-2021-3129
2024-01-15 AxiankeGITHUB
Exploit for CVE-2021-3129
2023-10-22 banyaksepuhGITHUB
Exploit for CVE-2021-3129
2023-10-22 banyaksepuhGITHUB
Exploit for CVE-2021-3129
2023-07-27 withmasdayGITHUB
Exploit for CVE-2021-3129
2023-07-26 miko550GITHUB
Exploit for CVE-2021-3129
2023-03-11 keyuan15GITHUB
Exploit for CVE-2021-3129
2023-03-04 ajisai-babuGITHUB
Exploit for CVE-2021-3129
2022-10-11 0nion1GITHUB
Exploit for CVE-2021-3129
2022-09-30 hupe1980GITHUB
Exploit for CVE-2021-3129
2022-09-03 JacobEbbenGITHUB
Exploit for CVE-2021-3129
2022-04-16 joshuavanderpollGITHUB
Exploit for CVE-2021-3129
2022-04-08 cuongtop4598GITHUB
Ignition Remote Code Execution Exploit
2022-02-17 metasploitZDTRuby
Ignition Remote Code Execution
2022-02-16 Heyder Andrade, ambionics, metasploit.comPACKETSTORMRuby
Exploit for CVE-2021-3129
2022-01-31 moGITEE
Exploit for CVE-2021-3129
2021-10-01 knqyf263GITHUB
Exploit for CVE-2021-3129
2021-09-17 sh3llsasGITEE
Exploit for Allocation of Resources Without Limits or Throttling in Th-Wildau Covid-19_Contact_Tracing
2021-08-22 lanmarc77GITHUB
Exploit for CVE-2021-3129
2021-07-22 1111oneGITHUB
Exploit for CVE-2021-3129
2021-07-15 希言GITEE
Ignition 2.5.1 Remote Code Execution Exploit
2021-04-07 zdtZDTPython
Ignition 2.5.1 Remote Code Execution
2021-04-06 Tobias MarcottoPACKETSTORMPython
Exploit for CVE-2021-3129
2021-03-19 sh3llsasGITEE
Exploit for CVE-2021-3129
2021-02-14 FunPhishingGITHUB
Exploit for CVE-2021-3129
2021-01-27 crisprssGITHUB
Exploit for CVE-2021-3129
2021-01-27 nth347GITHUB
Exploit for CVE-2021-3129
2021-01-27 hungnt199GITHUB
Exploit for CVE-2021-3129
2021-01-25 SecPros-TeamGITHUB
Exploit for CVE-2021-3129
2021-01-22 SNCKERGITHUB
Laravel 8.4.2 debug mode - Remote code execution
2021-01-14 SunCSR TeamEXPLOITDBPython
Exploit for CVE-2021-3129
2021-01-13 ambionicsGITHUB
Unauthenticated remote code execution in Ignition
2021-01-13 Heyder Andrade <eu@heyderandrade.org>, ambionicsMETASPLOITRuby