Description
Published: 2025-03-27 Updated: 2025-03-27
An issue in FoxCMS v.1.2.5 allows a remote attacker to execute arbitrary code via the case display page in the index.html component.
Usage:
python test_poc.py -u http://192.168.0.1/images/index.html "id"
python test_poc.py -f url.txt "id"
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view