Sploitus

Exploit for Deserialization of Untrusted Data in Drupal

githubexploit · 2019-02-25

Exploit Code

README12 lines
## https://sploitus.com/exploit?id=2E784848-9283-5410-994A-AA595A74D970
# CVE-2019-6340
CVE-2019-6340 POC Drupal rce

python poc.py [url] [php func] [command] [node number]

Example:
python poc.py http://192.168.142.148/drupal-8.6.9/ system ipconfig 200



Twitter: @0w4ys