ATutor file_manager Remote Code Execution
Posted by deepcore on April 13, 2019 – 1:40 am
This Metasploit module allows the user to run commands on the server with the teacher user privilege. The ‘Upload files’ section in the ‘File Manager’ field contains an arbitrary file upload vulnerability.
Post a reply
You must be logged in to post a comment.