Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
eval-stdin — Automated Exploit for CVE-2017-9841 (eval-stdin.php vulnerable file) | Kitploit
Tools/GitHubGitHub/mileticluka1/eval-stdin
Privilege EscalationPayload GenerationVulnerability AnalysisExploitationWeb Application ExploitationPenetration Testing
GitHubmileticluka1/eval-stdin

eval-stdin

Automated Exploit for CVE-2017-9841 (eval-stdin.php vulnerable file)

View Repository
3 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Util PHP eval-stdin.php (CVE-2017-9841) vulnerability is RCE vulnerability in outdated eval-stdin.php. This exploit is just automation for mentioned vulnerability and is still in development.

Scripted in Ruby 3.0.4 (within 2 hours), tested on Kali linux, Arch Linux, Ubuntu minimal and Termux.

How to run it?

ruby evil-eval.rb

Inside of it, when you type help you can see what commands are available such as revshell, checkconnection, privesc which are very, very useful.

When you exit it, you shouldn't do CTRL+C (^C), you can do it by just typing exit

DISCLAIMER:

For any misuse or illegal action with this exploit I am totally not responsible.

Keep calm an 'door the planet

Download Tool