This document outlines a Blind SSRF to RCE exploit on a fresh PrestaShop 8.1.7 docker installation.
- Ensure you have at least an outdated module installed, for example:
ps_facetedsearch
- Download the original package:
-
Prepare the Malicious File:
-
Upgrade the Module:
-
Intercept and Modify the Request:
-
Before Exploit:
-
After Exploit:
- Reverse shells could be obtained using similar methods.