Files
metasploit-gs/modules/exploits/multi/http
Jack Heysel 84ea514180 Land #19026, Add pgadmin exploit CVE-2024-2044
This adds an exploit for pgAdmin <= 8.3 which is a path traversal
vulnerability in the session management that allows a Python pickle
object to be loaded and deserialized. This also adds a new Python
deserialization gadget chain to execute the code in a new thread so the
target application doesn't block the HTTP request.
2024-04-16 14:12:41 -07:00
..
2023-04-04 10:24:09 +01:00
2023-08-28 17:39:02 -04:00
2024-02-02 11:45:51 +01:00
2023-04-04 10:24:09 +01:00
2023-04-04 10:24:09 +01:00
2023-04-04 10:24:09 +01:00
2022-02-16 17:22:40 -06:00
2022-02-16 17:22:40 -06:00
2021-02-08 12:24:12 +00:00
2021-10-11 16:23:09 -04:00
2022-02-16 17:22:40 -06:00
2022-06-03 11:23:53 +03:00
2022-02-16 17:22:40 -06:00
2024-03-26 21:05:35 +01:00