LinuxKI Toolset 6.01 Remote Command Execution
Posted by deepcore on June 11, 2020 – 6:23 pm
This Metasploit module exploits a vulnerability in LinuxKI Toolset versions 6.01 and below which allows remote code execution. The kivis.php pid parameter received from the user is sent to the shell_exec function, resulting in the security vulnerability.
Post a reply
You must be logged in to post a comment.