Synopsis/summary;
Tools / Blogs used;
Links to Resources.
For web app and/or server
Confirm that a service is vulnerable
Service Exploited: PHP HTML Parser
Vulnerability Type: RCE by execution of the shell_exec PHP function
Exploit PoC: phpbash: https://github.com/Arrexel/phpbash
The HTML Parser on admin.php executes any supplied PHP code.