Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-5002 PoC — Pgadmin4: remote code execution by an authenticated user

Source
Associated Vulnerability
Title:Pgadmin4: remote code execution by an authenticated user (CVE-2023-5002)
Description:A flaw was found in pgAdmin. This issue occurs when the pgAdmin server HTTP API validates the path a user selects to external PostgreSQL utilities such as pg_dump and pg_restore. Versions of pgAdmin prior to 7.6 failed to properly control the server code executed on this API, allowing an authenticated user to run arbitrary commands on the server.
File Snapshot

# pgAdmin ≤ 7.6 后台远程命令执行漏洞 CVE-2023-5002 ## 漏洞描述 pgAdmin 是一个著名的 PostgreSQL 数据库管理平台。 pgAdmin 包含一个 ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →