This Metasploit module exploits a command execution vulnerability in ActualAnalyzer version 2.81 and prior. The 'aa.php' file allows unauthenticated users to execute arbitrary commands in the 'ant' cookie.
c6579fbbfca38d36e2a6f84933254ca5552f498fbc09c37104f4b62e7c16f695
The Ploticus module in PhpWiki 1.5.0 allows remote attackers to execute arbitrary code via command injection.
18e48e1283c1f7e2061ea8e462d3f9d53674f70eece48f0ad2d5d50a28673365
ActualAnalyzer remote command execution exploit that leverages an eval.
8f2990bbfd3d05f330dbb9f7a0d5dc5d2bde4218361df5492b6297038b4bc115
Proof of concept exploit for PhpWiki that demonstrates a remote command injection vulnerability via the Ploticus module.
0537e551a6510f8813c0b1364ed2c664f69c09d7a2daea939ae50369296e203f
XRMS blind SQL injection exploit that leverages $_SESSION poisoning and achieves remote command execution.
22da305ed8f31ea31597071bebb8862e1bbef05d26a2868faaa7c5cd07486cbe