You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Is this Stock Management System something people would be likely to find out in the wild?
I'd search online, but the name "Stock Management System" and "SMS" are not really conducive to internet searching 😆
Also, there's a hidden redirect in the Stock Management documentation for a link that says it goes to apachefriends.org, but sends you to a malware server/Microsoft impersonation page.
Summary
Brief explanation of the module.
This module exploits an authenticated RCE vulnerability in Stock Management System (SMS) v1.0
Basic example
https://medium.com/@n0pTeX/an-authenticated-rce-stock-management-system-v1-0-sms-v1-0-18f0a41b70dc
Motivation
Exploiting an RCE vulnerability and gain access on the system with a meterpreter session
The text was updated successfully, but these errors were encountered: