Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2015-2208 PoC — PHPMoAdmin‘moadmin.php’操作系统命令注入漏洞

Source
Associated Vulnerability
Title:PHPMoAdmin‘moadmin.php’操作系统命令注入漏洞 (CVE-2015-2208)
Description:PHPMoAdmin是一套采用PHP开发的在线MongoDB管理工具。该工具可用于创建、删除和修改数据库和索引,并提供视图和数据搜索工具、数据库启动时间和内存统计、JSON格式的数据导入导出等功能。 phpMoAdmin 1.1.2版本的moadmin.php脚本中的‘saveObject’函数存在安全漏洞。远程攻击者可借助‘object’参数中的shell元字符利用该漏洞执行任意命令。
Description
Docker simulating cve-2015-2208 vulnerability
File Snapshot

[4.0K] /data/pocs/2751e38c72d04f11bd0052fa2efd6915df6cde9e ├── [ 575] Dockerfile ├── [ 18K] LICENSE ├── [ 27K] phpmoadmin1.1.2.zip ├── [ 636] readme.md └── [ 70] run.sh 0 directories, 5 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.