Sploitus

Exploit for Command Injection in Rubyonrails Rails

githubexploit · 2022-07-02

Exploit Code

README2 lines
## https://sploitus.com/exploit?id=FA76806E-28FB-5E67-BDCF-9D9A7DC381DC
PoC exploit for CVE-2019-5420, a Ruby deserialization vulnerability. The target product/service is Ruby, and the vulnerability class/vector is deserialization leading to remote command execution (RCE). The probable entry point is the `exploit.rb` script, which is likely invoked by running `ruby exploit.rb`. Not specified. The expected impact is remote command execution.