wordpress XMLRPC.php RCE ?
by itsBlackNight - Saturday March 30, 2024 at 01:59 AM
#1
Greetings gentlemen !

I need some help concerning this : In a wordpress website I can POST request to xmlrpc.php & and I'm stuck a little bit .

Tried to bruteforce some password with the method wpuserblog with a username that i got through wpscan but bruteforcing is too fking slow for me took me 4 hours to test 1000 custom password
I've seen that there's a possibility to get some remote code execution if the website is running php [SOURCE] . But that didn't work for me

X-Powered-By: PHP/8.2.16
Server: LiteSpeed

if you have any idea feel free to share ! Thank you
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  {SECRET} DATABASE OF EXPLOITS lulagain 435 26,307 9 hours ago
Last Post: DirtyEra
  New Zer0 Day Wordpress A3g00n 81 3,316 Today, 03:06 AM
Last Post: DirtyEra
  Wordpress Elementor 3.11.6 Exploit - Full Takeover TheGoodlife 102 19,680 Yesterday, 06:45 AM
Last Post: eztocard
  new wordpress website takeover vuln (video + poc ) zinzeur 314 28,307 Apr 30, 2026, 03:54 PM
Last Post: baku
  Google Dorks for finding SQL injection vulnerabilities and other security issues 1yush 66 3,159 Apr 29, 2026, 08:51 PM
Last Post: Yjuddur

Forum Jump:


 Users browsing this forum: 1 Guest(s)