SecGen icon indicating copy to clipboard operation
SecGen copied to clipboard

New Module: codoforum_rce_authenticated

Open smarkusfeld opened this issue 2 years ago • 0 comments

TODO:

  1. Resolve install password issue -- need to ensure password is hashed using phpass otherwise the admin user cannot login and it is not possible to complete the exploit. Possible solutions (a) change the codoforum security requirements or (b) create php script/page just for creating the admin user as the native pages cannot be run using puppet
  2. Team testing

smarkusfeld avatar Feb 12 '23 18:02 smarkusfeld