PHPTax versions 0.8 and below remote code execution exploit. Written in Python.
86294030fd719aa799ec672577b9d00f4cb5ff09a5e758f0b04271418448dd6a
PhpTax version 0.8 suffers from a file manipulation remote code execution vulnerability.
8ae6254803096ab2ef657f2b7727c461b35b9d9a7e98fa46add0a2f8bcc4e522
This Metasploit module exploits a vulnerability found in PhpTax, an income tax report generator. When generating a PDF, the icondrawpng() function in drawimage.php does not properly handle the pfilez parameter, which will be used in a exec() statement, and then results in arbitrary remote code execution under the context of the web server. Please note: authentication is not required to exploit this vulnerability.
3ecd2777666a36e43ebd4979984a5196686b1b70e2c3ecf4ce15f5ace94c27d1
PhpTax version 0.8 suffers from a remote code execution vulnerability.
d0d6e0e1685582da24a6399ab9398b69b943a0fb2d14f8839ddf5d959307e3d4