Strapi Framework Vulnerable to Remote Code Execution
# CVE-2019-19609
Strapi Framework Vulnerable to Remote Code Execution
well, I didnt found any exploit for CVE-2019-19609 so I wrote one. :/
### Usage
```
python3 exploit.py <rhost> <lhost> <jwt> <url>
```
### A video
https://youtu.be/alhZJmuUd2s
### More Information
https://hack-fast.herokuapp.com/cve/CVE-2019-19609 <br>
https://github.com/strapi/strapi/pull/4636
登录后查看神龙缓存的 POC 文件快照
登录查看