CVE-2021-3129 icon indicating copy to clipboard operation
CVE-2021-3129 copied to clipboard

Laravel <= v8.4.2 debug mode: Remote code execution (CVE-2021-3129)

Results 7 CVE-2021-3129 issues
Sort by recently updated
recently updated
newest added

I get an error telling: ValueError: substring not found how can i fix this error? ![Screenshot_2](https://user-images.githubusercontent.com/10806362/202136387-9b0ff9c4-7bdd-4ac6-bc15-5064968a7b22.png)

➜ CVE-2021-3129-main python3 exp.py http://127.0.0.1/ [*] Try to use Laravel/RCE1 for exploitation. base64: invalid option -- w Usage: base64 [-hvDd] [-b num] [-i in_file] [-o out_file] -h, --help display this...

``` Traceback (most recent call last): File "/home/abdilahrf/Tools/CVE-2021-3129/exp.py", line 123, in main() File "/home/abdilahrf/Tools/CVE-2021-3129/exp.py", line 120, in main EXP(sys.argv[1]) File "/home/abdilahrf/Tools/CVE-2021-3129/exp.py", line 117, in __init__ self.exp() File "/home/abdilahrf/Tools/CVE-2021-3129/exp.py", line 108,...

``` [*] Try to use Laravel/RCE2 for exploitation. /bin/sh: line 1: php: command not found [+]exploit: [*] Laravel/RCE2 Result: [*] Try to use Laravel/RCE3 for exploitation. /bin/sh: line 1: php:...

I got connection aborted here ``` Traceback (most recent call last): File "/usr/lib/python3/dist-packages/urllib3/connectionpool.py", line 601, in urlopen chunked=chunked) File "/usr/lib/python3/dist-packages/urllib3/connectionpool.py", line 387, in _make_request six.raise_from(e, None) File "", line 3,...

I don't get an alert telling me it is not vulnerable, i get empty results: ``` [*] Try to use Laravel/RCE1 for exploitation. [+]exploit: [*] Laravel/RCE1 Result: [*] Try to...