-
Notifications
You must be signed in to change notification settings - Fork 9
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
what address to give in lhost #1
Comments
I've tested the exploit with a HackTheBox machine on the same network so I don't know if it will work using your VPS ip, however take a look at the exploit source code, it approach a PHP vulnerability to execute commands via |
So you have any idea how can I exploit it further in any way,
Like if i am just going to report without any confirm rce, i would get
nothing,
I am naive to this
…On Sun, May 14, 2023, 10:51 PM D3Ext ***@***.***> wrote:
I've tested the exploit with a HackTheBox machine on the same network so I
don't know if it will work using your VPS ip, however take a look at the
exploit source code, it approach a PHP vulnerability to execute commands
via eval function.
It may not work because the exploit also uses the 9000 port
—
Reply to this email directly, view it on GitHub
<#1 (comment)>,
or unsubscribe
<https://github.com/notifications/unsubscribe-auth/AJSJONLPQKBGIN6FSNKVLWTXGEIBTANCNFSM6AAAAAAYAVBBPE>
.
You are receiving this because you authored the thread.Message ID:
***@***.***>
|
@D3Ext you have any idea how can I exploit it further in any way? |
I haven't tested it but if you pass your VPS address to |
my vps address,
also nuclei is showing this is vulnerable, but i am not receiving anything back, what might be the issue
The text was updated successfully, but these errors were encountered: