.. / CVE-2021-32172

Exploit for Maian Cart <=3.8 - Remote Code Execution (CVE-2021-32172)

Description:

Maian Cart 3.0 to 3.8 via the elFinder file manager plugin contains a remote code execution vulnerability.

Nuclei Template

View the template here CVE-2021-32172.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2021/CVE-2021-32172.yaml
Copy

References:

https://www.maianscriptworld.co.uk/critical-updates
https://github.com/DreyAnd/maian-cart-rce
https://nvd.nist.gov/vuln/detail/CVE-2021-32172
https://www.maianscriptworld.co.uk/
https://dreyand.github.io/maian-cart-rce/