Updated exploit for CVE-2021-22911 (Rocket.Chat 3.12.1 - NoSQL Injection to RCE (Unauthenticated))
# Updated exploit for [CVE-2021-22911](https://nvd.nist.gov/vuln/detail/CVE-2021-22911) (Rocket.Chat 3.12.1 - NoSQL Injection to RCE (Unauthenticated))
> original credits to : [https://www.exploit-db.com/exploits/50108](https://www.exploit-db.com/exploits/50108)
## Setup
- Create python virtual environment and install deps
```bash
$ python -m venv venv
$ source venv/bin/activate
$ pip install requests oathtool
```
## Usage
- I added a new argument `-p` which takes the low privilege user password and also uses the same for reseting admin password
```bash
$ python 50108.py -u "kali@kali.local" -p "<low priv user password>" -a "admin@localhost" -t "http://<ip>:<port>"
```
登录后查看神龙缓存的 POC 文件快照
登录查看