Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CraftCMS_CVE-2023-41892 — Exploit for CVE-2023-41892 | Kitploit
Tools/GitHubGitHub/0xfalafel/craftcms_cve-2023-41892
Vulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingRemote Access Tool
GitHub0xfalafel/craftcms_cve-2023-41892

CraftCMS_CVE-2023-41892

Exploit for CVE-2023-41892

View Repository
11312 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Craft CMS CVE-2023-41892

There is a Unauthenticated Remote Code Execution (RCE) affecting CraftCMS 4.0.0-RC1 - 4.4.14.

Usage of the exploit

Usage

root@kitploit:~
python3 craft-cms.py http://target

Requirements

The exploit make use of requests. Install it with :

root@kitploit:~
python3 -m pip install requests

Acknowledgements

https://github.com/craftcms/cms/security/advisories/GHSA-4w8r-3xrw-v25g
https://blog.calif.io/p/craftcms-rce
https://gist.github.com/to016/b796ca3275fa11b5ab9594b1522f7226
https://vulners.com/metasploit/MSF:EXPLOIT-LINUX-HTTP-CRAFTCMS_UNAUTH_RCE_CVE_2023_41892-

Download Tool
https://threatprotect.qualys.com/2023/09/25/craft-cms-remote-code-execution-vulnerability-cve-2023-41892/