POC CVE-2024-9264
by result - Saturday October 26, 2024 at 05:48 AM
#1
This repository contains a Python script that exploits a remote code execution vulnerability in Grafana's SQL Expressions feature. By leveraging insufficient input sanitization, this exploit allows an attacker to execute arbitrary shell commands on the server 

                                                                                       
Hidden Content
You must register or login to view this content.
Reply
#2
Love viewing your proof of concepts trying to learn more about client sided exploitation and your posts are extremely helpful much appreciated.
Reply
#3
sounds cool bro i'll try it ty
Reply
#4
sounds cool bro i'll try it try
This forum account is currently banned. Ban Length: (Permanent)
Ban Reason: Leeching | http://breachddyfwvcp4kzccos5oxtdbssmfbp...an-Appeals if you feel this is incorrect.
Reply
#5
thx bro))))))))))
This forum account is currently banned. Ban Length: (Permanent)
Ban Reason: Leeching | http://breachddyfwvcp4kzccos5oxtdbssmfbp...an-Appeals if you feel this is incorrect.
Reply
#6
Lets modify this to some extent.
Reply
#7
sounds cool bro i'll try it try
Reply
#8
thanks a lot frogmen
This forum account is currently banned. Ban Length: (Permanent)
Ban Reason: Leeching | http://breachddyfwvcp4kzccos5oxtdbssmfbp...an-Appeals if you feel this is incorrect.
Reply
#9
[cita="resultado" pid='891081' dateline='1729921715']
Este repositorio contiene un script de Python que explota una vulnerabilidad de ejecución de código remoto en la función de expresiones SQL de Grafana. Al aprovechar una limpieza de entrada insuficiente, este exploit permite a un atacante ejecutar comandos de shell arbitrarios en el servidor. 

                                                                                       
[/cita]
This forum account is currently banned. Ban Length: (Permanent)
Ban Reason: Leeching | http://breachddyfwvcp4kzccos5oxtdbssmfbp...an-Appeals if you feel this is incorrect.
Reply
#10
:catfries:
o catries o
LifeIsArt
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  new wordpress website takeover vuln (video + poc ) zinzeur 313 27,277 03-28-2026, 02:43 AM
Last Post: toshi99
  [POC] Google OAuth "MultiLogin" endpoint 0-day Farfallaiero 106 13,201 02-10-2026, 03:34 PM
Last Post: birhikayemvar
  Cool Remote Patching ETW/Amsi PoC pepeloco 6 2,092 02-08-2026, 07:58 AM
Last Post: zeroday99
  CVE-2025-40554 - SolarWinds Web Help Desk Auth Bypass & RCE PoC miyako 3 73 02-07-2026, 03:32 PM
Last Post: cysc
  POC CVE-2025-24071 caca28sapo1 15 805 02-07-2026, 08:53 AM
Last Post: hacker0123



 Users browsing this thread: