Sploitus

Exploit for CVE-2021-3129

githubexploit · 2021-10-01

Exploit Code

README33 lines
## https://sploitus.com/exploit?id=272FC334-4DD4-570F-AB53-1BF7758BA869
# CVE-2021-3129
PoC for CVE-2021-3129 (Laravel)

For educational purposes only


## Test

### Set up the PoC environment

```
$ docker-compose build
$ docker-compose up -d
```

### Confirm it works

See http://localhost:8000/ and make sure the Laravel default page is shown.

### Exploit

```
$ docker-compose exec attacker sh
/ # python3 exploit.py
```

## References
- https://www.ambionics.io/blog/laravel-debug-rce
- https://github.com/SNCKER/CVE-2021-3129

## Author
Teppei Fukuda