issues
search
ambionics
/
phpggc
PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.
https://ambionics.io/blog
Apache License 2.0
3.25k
stars
502
forks
source link
Coiffeur
#115
Closed
therealcoiffeur
closed
2 years ago
therealcoiffeur
commented
2 years ago
Add three gadget chains:
Typo3
Typo3’s core, file deletion Gadchet Chain
commit 1cbe3d8c089d94d76af2b37aea481cbd8b0707f9, 5 Jul 2014 (v4.5.35) <= exploitable <= commit ab4fec2a1aea46488e3dc2b9cca0712f3fa202b0, 12 May 2020 (v10.4.1)
Dompdf
Dompdf’s core, file deletion 1 Gadchet Chain
commit a13af8d4bdab280bf8c48dbc23a4d51cac6af202, 1 Dec 2021 (~v1.1.1) <= exploitable
Dompdf’s core, file deletion 2 Gadchet Chain
exploitable < commit 61c86c04d2a483187ff9f6a73c50d42669be5b4d, 1 Dec 2021 (~v1.1.1)
cfreal
commented
2 years ago
Thanks coiffeur !
Add three gadget chains:
Typo3
Dompdf