Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2021-21809 — CVE-2021-21809 POC | Kitploit
Tools/GitHubGitHub/anldori/cve-2021-21809
Vulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingCommand and ControlLearning & Education
GitHubanldori/cve-2021-21809

CVE-2021-21809

CVE-2021-21809 POC

View Repository
1413 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2021-21809 POC

CVE details: A command execution vulnerability exists in the default legacy spellchecker plugin in Moodle 3.10. A specially crafted series of HTTP requests can lead to command execution. An attacker must have administrator privileges to exploit this vulnerabilities.

In the below video, I'm going to gain access to Golden Eye 1 OSCP Lab by exploiting this vulnerability with out using Metasploit. Check out GoldenEye 1: https://www.vulnhub.com/entry/goldeneye-1,240/.

Get the revershell by using telnet command, encode it as url format and save it to Path to aspell (Settings/Server/System paths).

https://user-images.githubusercontent.com/101538840/208561898-6468a4ef-acf8-4742-b3e1-f0955ae7e9ab.mp4

Download Tool