Skip to content
KitploitKITPLOIT
ToolsBlog
Log in
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Tools/GitHubGitHub/7s26simon/cve-2013-0156
Vulnerability AnalysisExploitationWeb Application ExploitationCTFPenetration TestingLearning & Education
GitHub7s26simon/cve-2013-0156

CVE-2013-0156

Modified ruby script for RCE

View Repository
69 months agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Rails YAML deserialization RCE (CVE-2013-0156) - PentesterLab Compatible

Ronin-free, Ruby 3.x compatible version of https://gist.github.com/postmodern/4499206

Usage: ruby rails_rce.rb http://target/ "system('/usr/local/bin/score UUID')"

⚠️ LEGAL DISCLAIMER ⚠️

This script is for EDUCATIONAL PURPOSES ONLY and authorized security testing.

✅ USE ONLY AGAINST:

- Targets you own

- CTF challenges (PentesterLab, HackTheBox, etc.)

- Systems with explicit written permission

❌ NEVER USE AGAINST:

- Production systems without authorization

- Third-party websites/services

- Any system where you lack explicit permission

The author is NOT responsible for misuse, damages, or legal consequences.

Unauthorized testing may violate laws like CFAA (USA) or Computer Misuse Act (UK).

By using this script, you agree to use it responsibly and legally only.

## Credits

Original: Postmodern (2013) | Modernized: [7s26simon]

Download Tool