
My working exploit script for Shitrix (CVE-2019-19781)
My working approach to exploiting Shitrix
Updated 21st July, 2020 - now supports multi-worded commands and forward slashes
You need curl >= 7.42.0
Call it with, e.g.:
./shitrix.sh target port ls -al