Quantcast
Channel: Python Files ≈ Packet Storm
Viewing all articles
Browse latest Browse all 132

Grav CMS 1.7.44 Server-Side Template Injection

$
0
0
GenGravSSTIExploit is a proof of concept Python script that exploits an authenticated server-side template injection (SSTI) vulnerability in Grav CMS versions 1.7.44 and below. This vulnerability allows a user with editor permissions to execute OS commands on a remote server.

Viewing all articles
Browse latest Browse all 132

Trending Articles