Quantcast
Channel: Python Files ≈ Packet Storm
Viewing all articles
Browse latest Browse all 132

Calibre 7.15.0 Python Code Injection

$
0
0
This Metasploit module exploits a Python code injection vulnerability in the Content Server component of Calibre version 6.9.0 through 7.15.0. Once enabled (disabled by default), it will listen in its default configuration on all network interfaces on TCP port 8080 for incoming traffic, and does not require any authentication. The injected payload will get executed in the same context under which Calibre is being executed.

Viewing all articles
Browse latest Browse all 132

Trending Articles