Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2015-8562 PoC — Joomla! Core 远程代码执行漏洞

Source
Associated Vulnerability
Title: Joomla! Core 远程代码执行漏洞 (CVE-2015-8562)
Description:Joomla! 1.5.x, 2.x, and 3.x before 3.4.6 allow remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via the HTTP User-Agent header, as exploited in the wild in December 2015.
Readme
<!-- PROJECT LOGO -->
<br />

  <h3 align="center">Joomla! RCE (CVE 2015-8562)</h3>

  <p align="center">
  Docker compose file to setup environment for CVE 2015-8562 testing
  </p>

</p>



<!-- TABLE OF CONTENTS -->

<details open="open">
  <summary><h2 style="display: inline-block">Table of Contents</h2></summary>
  <ol>
    <li>
      <a href="#about-the-project">About The Project</a>
    </li>
    <li>
      <a href="#getting-started">Getting Started</a>
      <ul>
        <li><a href="#prerequisites">Prerequisites</a></li>
        <li><a href="#installation">Installation</a></li>
      </ul>
    </li>
    <li><a href="#usage">Usage</a></li>
    <li><a href="#contributing">Contributing</a></li>
    <li><a href="#license">License</a></li>
  </ol>
</details>


<!-- ABOUT THE PROJECT -->
## About The Project

This project includes a Docker compose file to setup environment for CVE 2015-8562 testing. 
It setup an Apache 2.4 server with PHP 5.3 and MySQL server 5.6. 
Once containers have been created, the installation procedure for Joomla 3.4.4 will be shown. 

The project also includes an exploit from: https://www.exploit-db.com/exploits/39033

<!-- GETTING STARTED -->



## Getting Started

### Installation

1. Clone the repo
   ```sh
   git clone https://github.com/Caihuar/Joomla-cve-2015-8562
   ```
   
2. Launch the following command inside the Joomla_RCE folder
   ```sh
   docker-compose up
   ```
   
3. Connect to the server via http://localhost:8081

4. Follow Joomla wizard procedure with the following parameters:

   1. Database user: user
   2. Database password: password
   3. Database name: joomla
   4. Database address: 173.18.0.3

<!-- USAGE EXAMPLES -->

## Usage

Run the exploit.py script: 

```sh
python exploit.py -t http://localhost:8081 --cmd
```

Note that the script has been written using Python 2. 
If you want to launch a reverse shell, do not add the "--cmd" parameter.

## Contributing

Contributions are what make the open source community such an amazing place to be learn, inspire, and create. Any contributions you make are **greatly appreciated**.

1. Fork the Project
2. Create your Feature Branch (`git checkout -b feature/AmazingFeature`)
3. Commit your Changes (`git commit -m 'Add some AmazingFeature'`)
4. Push to the Branch (`git push origin feature/AmazingFeature`)
5. Open a Pull Request



<!-- LICENSE -->

## License

Distributed under the MIT License. See `LICENSE` for more information.

File Snapshot

Log in to view the POC file snapshot cached by Shenlong Bot

Log in to view
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →