module
LinuxKI Toolset 6.01 Remote Command Execution
| Disclosed | Created |
|---|---|
| May 17, 2020 | Jun 10, 2020 |
Disclosed
May 17, 2020
Created
Jun 10, 2020
Description
This module exploits a vulnerability in LinuxKI Toolset The kivis.php pid parameter received from the user is sent to the shell_exec function, resulting in security vulnerability.
Authors
Cody Winkler
numan türle
numan türle
Platform
Linux,PHP,Unix
Architectures
php, cmd, x86, x64
References
Module Options
To display the available options, load the module within the Metasploit console and run the commands 'show options' or 'show advanced':
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.