PoCs for CVE-2020-11108; an RCE and priv esc in Pi-hole# CVE-2020-11108-PoC
Two PoCs are in this repo. cve-2020-11108-rce.py will give you a shell as the www-data user. root-cve-2020-11108-rce.py will give you a shell and escalate privileges to root. Note: This is destructive as we must overwrite teleporter.php.
For a full explanation/writeup please see <a href="http://frichetten.com/blog/cve-2020-11108-pihole-rce/#pk_campaign=github">this</a> blog post.
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view