CVE-2021-32172
CRITICAL EXPLOITED NUCLEIMaian Cart 3.8 - Unauthenticated Remote Code Execution via Elfinder Plugin
Title source: llmExploitation Summary
CVE-2021-32172 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 1 public exploit from researchers including DreyAnd. A Nuclei detection template is also available.
AI-analyzed exploit summary This exploit leverages an unauthenticated file upload vulnerability in Maian-Cart 3.8 to create a malicious PHP file via the elFinder component, then executes arbitrary commands through a web shell. The PoC includes cleanup functionality to remove the shell upon exit.
Description
Maian Cart v3.8 contains a preauthorization remote code execution (RCE) exploit via a broken access control issue in the Elfinder plugin.
Exploits (1)
This exploit leverages an unauthenticated file upload vulnerability in Maian-Cart 3.8 to create a malicious PHP file via the elFinder component, then executes arbitrary commands through a web shell. The PoC includes cleanup functionality to remove the shell upon exit.
Nuclei Templates (1)
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H