ProjectSend R1605 Unauthenticated...

- AV AC AU C I A
发布: 2024-11-22
修订: 2024-12-11

This Metasploit module exploits an improper authorization vulnerability in ProjectSend versions r1295 through r1605. The vulnerability allows an unauthenticated attacker to obtain remote code execution by enabling user registration, disabling the whitelist of allowed file extensions, and uploading a malicious PHP file to the server.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息