
ThinkAdmin CVE-2020-25540 poc
ThinkAdmin CVE-2020-25540 poc
Since the directory traversal vulnerability is too limited, only the file reading function has been implemented. Please go easy on the criticism, and I appreciate your guidance. The logic is based on the PHP source code; the key is the encryption method. You'll understand it at a glance.
use age:
python3 poc.py -t <IP> -c <command>