This is a proof of concept for CVE-2024-25153, a Remote Code Execution vulnerability in Fortra FileCatalyst Workflow 5.x, before 5.1.6 Build 114.
Full technical details can be found.
Run the exploit using the following command:
CVE-2024-25153.py --host <hostname> --port <port> --url <url> --cmd <command> Only the --host argument is required, and others are optional. Use the --help argument for full usage instructions.
This proof-of-concept is for demonstration purposes and should not be used for illegal activities. LRQA Nettitude are not responsible for any damage caused by the use or misuse of this code.
If your team needs identical development environments across different operating systems, Vagrant is the tool that makes…
GCC; the GNU Compiler Collection is the backbone of open-source software development on Linux. It supports…
Redis is an open-source, in-memory key-value store built for raw speed and versatility. It works equally well as…
Skype doesn't ship with Ubuntu by default it's a proprietary application owned by Microsoft and…
PHP is the backbone of the web. Frameworks like Laravel, WordPress, and Magento all run on…
Cybersecurity teams use OSINT to see what attackers can already see from public sources. In…