# CVE-2023-33733 on Reportlab v3.6.12
This lab was set up to test CVE-2023-33733.

## Analyzing process
You can see our analyzing process about this CVE in PDF file on main repo.

## Setup and Run

### Server
#### Setup
pip3 install -r requirements.txt
#### Run
### Attacker

#### Connect to server

Connect to server IP address
After running, you will see an interface like this, you can upload malicious HTML file to see the RCE.
![Screenshot 2024-04-22 194130](

#### Listening and uploading file
nc -lvnp 4444
Then, upload your evil.html and get the reverse shell