Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Joomla-cve-2015-8562 — Docker-based environment for testing Joomla RCE (CVE-2015-8562) with an included Python exploit script for command execution and reverse shells. | Kitploit
Tools/GitHubGitHub/caihuar/joomla-cve-2015-8562
Vulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingLearning & EducationLabs & Practice
GitHubcaihuar/joomla-cve-2015-8562

Joomla-cve-2015-8562

Docker-based environment for testing Joomla RCE (CVE-2015-8562) with an included Python exploit script for command execution and reverse shells.

View Repository
113 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Joomla! RCE (CVE 2015-8562)

Docker compose file to setup environment for CVE 2015-8562 testing

Table of Contents

  1. About The Project
  2. Getting Started
    • Prerequisites
    • Installation
  3. Usage
  4. Contributing
  5. License

About The Project

This project includes a Docker compose file to setup environment for CVE 2015-8562 testing. It setup an Apache 2.4 server with PHP 5.3 and MySQL server 5.6. Once containers have been created, the installation procedure for Joomla 3.4.4 will be shown.

The project also includes an exploit from: https://www.exploit-db.com/exploits/39033

Getting Started

Installation

  1. Clone the repo

    root@kitploit:~
    git clone https://github.com/Caihuar/Joomla-cve-2015-8562
    
  • Launch the following command inside the Joomla_RCE folder

    root@kitploit:~
    docker-compose up
    
  • Connect to the server via http://localhost:8081

  • Follow Joomla wizard procedure with the following parameters:

    1. Database user: user
    2. Database password: password
    3. Database name: joomla
    4. Database address: 173.18.0.3
  • Usage

    Run the exploit.py script:

    root@kitploit:~
    python exploit.py -t http://localhost:8081 --cmd
    

    Note that the script has been written using Python 2. If you want to launch a reverse shell, do not add the "--cmd" parameter.

    Contributing

    Contributions are what make the open source community such an amazing place to be learn, inspire, and create. Any contributions you make are greatly appreciated.

    1. Fork the Project
    2. Create your Feature Branch (git checkout -b feature/AmazingFeature)
    3. Commit your Changes (git commit -m 'Add some AmazingFeature')
    4. Push to the Branch (git push origin feature/AmazingFeature)
    5. Open a Pull Request

    License

    Distributed under the MIT License. See LICENSE for more information.

    Download Tool