XCart version 5.2.6 remote code execution exploit written in python. Requires having an administrative account.