Skip to content

Instantly share code, notes, and snippets.

@darkniyt
darkniyt / cve-2014-6287.py
Last active November 23, 2020 03:32 — forked from AfroThundr3007730/cve-2014-6287.py
Modified version of CVE-2014-6287 python script found here: https://www.exploit-db.com/exploits/39161/
#!/usr/bin/python
# Exploit Title: HttpFileServer 2.3.x Remote Command Execution
# Google Dork: intext:"httpfileserver 2.3"
# Date: 04-01-2016
# Remote: Yes
# Exploit Author: Avinash Kumar Thapa aka "-Acid"
# Vendor Homepage: http://rejetto.com/
# Software Link: http://sourceforge.net/projects/hfs/
# Version: 2.3.x
# Tested on: Windows Server 2008 , Windows 8, Windows 7