
CVE-2022-26265
The first proof of concept of the Contao CMS RCE
command-and-controlexploitationpayload-generation+3
10

The first proof of concept of the Contao CMS RCE

FuelCMS 1.4.1 Command Injection/Remote Code Execution.

Exploit to trigger RCE for CVE-2018-16763 on FuelCMS <= 1.4.1 and interactive shell.

Remote OS Command Injection in TastyIgniter v3.0.7 Sendmail Path field

CMS Made Simple 2.2.7 RCE exploit