Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2024-25153 PoC — Remote Code Execution in FileCatalyst Workflow 5.x prior to 5.1.6 Build 114

Source
Associated Vulnerability
Title:Remote Code Execution in FileCatalyst Workflow 5.x prior to 5.1.6 Build 114 (CVE-2024-25153)
Description:A directory traversal within the ‘ftpservlet’ of the FileCatalyst Workflow Web Portal allows files to be uploaded outside of the intended ‘uploadtemp’ directory with a specially crafted POST request. In situations where a file is successfully uploaded to web portal’s DocumentRoot, specially crafted JSP files could be used to execute code, including web shells.
Description
Proof-of-concept exploit for CVE-2024-25153.
Readme
# CVE-2024-25153
This is a proof of concept for CVE-2024-25153, a Remote Code Execution vulnerability in Fortra FileCatalyst Workflow 5.x, before 5.1.6 Build 114.

Full technical details can be found at [https://labs.nettitude.com/blog/cve-2024-25153-remote-code-execution-in-fortra-filecatalyst](https://labs.nettitude.com/blog/cve-2024-25153-remote-code-execution-in-fortra-filecatalyst)

## Usage
Run the exploit using the following command:
```
CVE-2024-25153.py --host <hostname> --port <port> --url <url> --cmd <command>
```

Only the `--host` argument is required, and others are optional. Use the `--help` argument for full usage instructions.

## Disclaimer
This proof-of-concept is for demonstration purposes and should not be used for illegal activities. LRQA Nettitude are not responsible for any damage caused by the use or misuse of this code.
File Snapshot

[4.0K] /data/pocs/f8cf088771e14ca41717c660cf396764ea5deb48 ├── [3.7K] CVE-2024-25153.py ├── [ 34K] LICENSE ├── [ 857] README.md └── [ 33] requirements.txt 0 directories, 4 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →