Wordpress Elementor 3.11.6 Exploit - Full Takeover
by TheGoodlife - Sunday July 2, 2023 at 04:45 PM
#71
(Jul 02, 2023, 04:45 PM)TheGoodlife Wrote: Meh meh meh, not interested in keeping that private anymore.

Usage: Enter url (with http/https) in the website parameter. Enter a registered user (no permissions necessary, can be a woocommerce customer too) and pass in username and password.

Above the payload you will find a link on which settings you can override using this exploit.

Enjoy:

go to tessssttt
Reply
#72
Thanks, I'll take a look, this should work
Reply
#73
Thanks for the post, it really helps me. I like it again thanks

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Leeching | http://c66go4clkqodr7tdjfu76jztjs7w7d3fajdeypxn73v4ju3dt7g5yyyd.onion/Forum-Ban-Appeals if you feel this is incorrect.
Reply
#74
lets test and see maybe is good
Reply
#75
I will see that, could be possibly add the CVE and CVSS in futures posts?
Reply
#76
testing thanks for sharing
Reply
#77
thanks for sharing
Reply
#78
THNX! WILL TRY THIS ONE!
Reply
#79
thank you buddy this is a bump
Reply
#80
are you serieuss sir

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Leeching | http://c66go4clkqodr7tdjfu76jztjs7w7d3fajdeypxn73v4ju3dt7g5yyyd.onion/Forum-Ban-Appeals if you feel this is incorrect.
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  {SECRET} DATABASE OF EXPLOITS lulagain 436 26,533 58 minutes ago
Last Post: nobcoderfck
  [POC] Google OAuth "MultiLogin" endpoint 0-day Farfallaiero 108 13,684 59 minutes ago
Last Post: nobcoderfck
  Ban Any Discord Exploit phineasfisherman 7 451 8 hours ago
Last Post: sniperx86
  Dokan Pro Unauthenticated SQL Injection POC | CVSS 10 Loki 42 3,754 10 hours ago
Last Post: d39ug
  New Zer0 Day Wordpress A3g00n 81 3,382 Yesterday, 03:06 AM
Last Post: DirtyEra

Forum Jump:


 Users browsing this forum: 1 Guest(s)