Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2024-27173 PoC — insecure upload

Source
Associated Vulnerability
Title:insecure upload (CVE-2024-27173)
Description:Remote Command program allows an attacker to get Remote Code Execution by overwriting existing Python files containing executable code. This vulnerability can be executed in combination with other vulnerabilities and difficult to execute alone. So, the CVSS score for this vulnerability alone is lower than the score listed in the "Base Score" of this vulnerability. For detail on related other vulnerabilities, please ask to the below contact point. https://www.toshibatec.com/contacts/products/ As for the affected products/models/versions, see the reference URL.
Readme
# Poc CVE-2024-27173
Join t.me/SpiderzTM

- Shodan and FOFA Dorks
Use the following dorks to find potentially vulnerable systems:

- Shodan Dorks:

product:"Toshiba e-Studio" "Remote Command"
http.title:"Toshiba e-Studio"
port:8080

- FOFA Dorks:

app="Toshiba-e-Studio"
title="Toshiba e-Studio"
port="8080"
File Snapshot

[4.0K] /data/pocs/5094cd8d5d76fb28f48151252a8533c5e50205ff ├── [ 653] poc.py └── [ 308] README.md 0 directories, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →