Codiad(full version) is vulnerable to write anything to configure file in the installation resulting upload a webshell.
codiad codiad -