Skip to content

A script that leverages 'zerodium' backdoor in PHP 8.1.0-dev via User-Agent.

Notifications You must be signed in to change notification settings

fahmifj/php-8.1.0-dev-zerodium-rce

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

6 Commits
 
 
 
 
 
 
 
 

Repository files navigation

Unauthenticated RCE via User-Agent in PHP 8.1.0-dev

Exploit background: https://news-web.php.net/php.internals/113838

Usage

Linux

chmod +x php-8.1.0-dev-zerodiumRCE.py
./php-8.1.0-dev-zerodiumRCE.py [url]

Windows

python php-8.1.0-dev-zerodiumRCE.py [url]

If the target is vulnerable, the exploit will give you a prompt.

image-20210604032844874

References

About

A script that leverages 'zerodium' backdoor in PHP 8.1.0-dev via User-Agent.

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages