
CVE-2023-46818 - ISPConfig PHP Code Injection PoC Exploit (Bash)
ISPConfig - PHP Code Injection PoC Exploit (Bash)
CVE-2023-46818 PoC
ISPConfig versions <= 3.2.11 are vulnerable to an authenticated PHP code injection vulnerability via the records[] parameter in the /admin/language_edit.php endpoint. A malicious authenticated admin user can exploit this to inject arbitrary PHP code, leading to remote code execution. The vulnerability occurs due to unsanitized handling of language file input used in dynamically generated PHP code.
git clone https://github.com/rvizx/CVE-2023-46818
cd CVE-2023-46818
chmod +x exploit.sh
./exploit.sh <target> <username> <password>
Researcher: Egidio Romano (aka EgiX) | [n0b0d13s[at]gmail[dot]com]
Original Advisory: https://karmainsecurity.com/KIS-2023-13