This exploit demonstrates a remote command execution (RCE) vulnerability in AuroraGPT V4 by injecting commands via the 'cmd' parameter in the URL. The example shows downloading a shell script from a remote server.
Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target:AuroraGPT V4
No auth needed
Prerequisites:access to the vulnerable web application