Skip to content
KitploitKITPLOIT
ToolsBlog
Log in
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2024-45440 — Drupal CVE-2024-45440 | Kitploit
Tools/GitHubGitHub/w0r1i0g1ht/cve-2024-45440
Vulnerability AnalysisExploitationInformation GatheringWeb SecurityPenetration TestingMisconfiguration
GitHubw0r1i0g1ht/cve-2024-45440

CVE-2024-45440

Drupal CVE-2024-45440

View Repository
281 year agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2024-45440

Drupal CVE-2024-45440 core/authorize.php in Drupal 11.x-dev allows Full Path Disclosure (even when error logging is None) if the value of hash_salt is file_get_contents of a file that does not exist.

Usage

python CVE-2024-45440.py

image

Lab Deployment

settings.php will replace the settings.php in the container via mounting.

After replacing settings.php, installation cannot proceed, but directly accessing http://127.0.0.1:8080/core/authorize.php will still expose the full path of the configuration file.

The normal installation process is as follows:

First, comment out line 15 of docker-ccompose.yml: - ./settings.php:/opt/drupal/web/sites/default/settings.php, then installation can proceed normally.

Start the docker container

docker-compose up -d

Select language

image-20241226171834277

Select installation method

image-20241226171854577

Set up database

image-20241226172032897

Other options default

Set up site

image-20241226172625492

Other options default, proceed with installation

Next, simulate a developer changing the hash_salt variable on line 268 of /sites/default/settings.php. We stop the docker container.

docker-compose down

Then uncomment line 15 of docker-ccompose.yml: - ./settings.php:/opt/drupal/web/sites/default/settings.php, and start the container again.

docker-compose up -d

Lab setup complete

Reproduction

Access http://127.0.0.1:8080/core/authorize.php

image-20241226170825303

Exposes the full path of the configuration file

Or use the script

python CVE-2024-45440.py

image

Download Tool