CVE-2024-3116
HIGHpgAdmin4 <= 8.4 - Remote Code Execution via Validate Binary Path API
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2024-3116.
PoCs published by TechieNeurons, M.Selim Karahan, Mustafa Mutlu, Ayoub Mokhtar, including Metasploit module exploits/windows/http/pgadmin_binary_path_api.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2024-3116, a Remote Code Execution (RCE) vulnerability in pgAdmin <= 8.4 on Windows. The exploit involves uploading a malicious binary disguised as a PostgreSQL tool and triggering its execution via pgAdmin's binary path configuration.
Description
pgAdmin <= 8.4 is affected by a Remote Code Execution (RCE) vulnerability through the validate binary path API. This vulnerability allows attackers to execute arbitrary code on the server hosting PGAdmin, posing a severe risk to the database management system's integrity and the security of the underlying data.
Exploits (2)
This repository contains a functional exploit for CVE-2024-3116, a Remote Code Execution (RCE) vulnerability in pgAdmin <= 8.4 on Windows. The exploit involves uploading a malicious binary disguised as a PostgreSQL tool and triggering its execution via pgAdmin's binary path configuration.
This Metasploit module exploits CVE-2024-3116 in pgAdmin <= 8.4 by uploading a malicious executable via the file manager API and triggering execution through the validate binary path endpoint. It supports both authenticated and unauthenticated exploitation on Windows targets.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L