Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Tools/GitHubGitHub/shikari00007/atom-cms-2.0---file-upload-remote-code-execution-un-authenticated-poc
Payload GenerationVulnerability AnalysisExploitationWeb Application ExploitationPenetration Testing
GitHubshikari00007/atom-cms-2.0---file-upload-remote-code-execution-un-authenticated-poc

Atom-CMS-2.0---File-Upload-Remote-Code-Execution-Un-Authenticated-POC

Remote Code Execution (RCE)

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
View Repository
31104 years agoNot yet reviewed
Share

Atom-CMS-2.0---File-Upload-Remote-Code-Execution-Un-Authenticated-

Remote Code Execution (RCE)

  • Exploit Author: Ashish Koli (Shikari)
  • Vendor Homepage: https://thedigitalcraft.com/
  • Software Link: https://github.com/thedigicraft/Atom.CMS
  • Version: 2.0
  • CVE: CVE-2022-25487
  • About this:
  • This script uploads webshell.php to the Atom CMS. An application will store that
  • file in uploads directory with unique number, which allows us to access Webshell.
  • Usage : python3 exploit.py
  • Example: python3 exploit.py 127.0.0.1 80 /atom
  • POC: https://youtu.be/qQrq-eEpswc
Download Tool