WonderCMS 3.1.3 - Authenticated Remote Code Execution
<a href="https://nvd.nist.gov/vuln/detail/CVE-2020-35314">CVE-2020-35314</a> - Authenticated Remote Code Execution in WonderCMS 3.1.3
This repository was created with the goal of testing Remote Code Execution vulnerability on WonderCMS v3.1.3.
This fake plugin includes a backdoor php shell, which is located in the file evil.php.
It is recommended avoid using this fake plugin on your production web server.

登录后查看神龙缓存的 POC 文件快照
登录查看