CVE-2019-6340 Drupal < 8.6.10 и 8.5.11 REST services Unauthenticated RCE PoC
Подробности:
https://www.drupal.org/sa-core-2019-003
https://www.ambionics.io/blog/drupal8-rce
Пример использования:
exploit:
https://www.ambionics.io/blog/drupal8-rce
www.exploit-db.com
Подробности:
https://www.drupal.org/sa-core-2019-003
https://www.ambionics.io/blog/drupal8-rce
Пример использования:
Код:
$ python cve-2019-6340.py http://127.0.0.1/ "ps auxf"
exploit:
https://www.ambionics.io/blog/drupal8-rce
Drupal < 8.6.9 - REST Module Remote Code Execution
Drupal < 8.6.9 - REST Module Remote Code Execution. CVE-2019-6340 . webapps exploit for PHP platform