## https://sploitus.com/exploit?id=PIWIK
**Name**| piwik
---|---
**CVE**| CVE-2009-4137
**Exploit Pack**| [CANVAS](<http://http://www.immunityinc.com/products-canvas.shtml>)
**Description**| Piwik unserialize() + __destruct
**Notes**| References: ['http://www.sektioneins.com/en/advisories/advisory-032009-piwik-cookie-unserialize-vulnerability/', 'http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-4137']
Notes:
This exploit gets a remote shell from vulnerable piwik installation (Piwik <= 0.4.5).
You will probably need to break out of safe mode for this as well.
Date public: 12/9/2009
Repeatability: Infinite
CVE Name: CVE-2009-4137