new wordpress website takeover vuln (video + poc )
by zinzeur - Sunday January 14, 2024 at 04:28 PM
Thanks you brother
Reply
thanks sir, hope you have a good day, anyways thanks for sharing
Reply
nice threads... i hope that's working
Reply
thanks you bro for sharing
Reply
Thanks i'll check it now
Reply
[citation="zinzeur" pid='352841' dateline='1705249732']
Il s'agit d'une toute nouvelle vulnérabilité (publiée il y a environ 3 jours) affectant les sites Web WordPress (toutes versions) avec la version installée du plugin post smtp <= 2.8.7 (la dernière est 2.8.9). Il permet une prise de contrôle complète de l'administrateur en réinitialisant le mot de passe et en récupérant les e-mails envoyés à partir de l'API du journal smtp. Amusez-vous bien !!
ps: La vidéo est à moi
vidéo :
Apprécier
[/citation]
Reply
wow that perfect
Reply
Nice info. Check it.
Reply
thank you so much
Reply
thank you so much
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  New Zer0 Day Wordpress A3g00n 83 4,147 May 11, 2026, 08:17 PM
Last Post: j4ng0
  {SECRET} DATABASE OF EXPLOITS lulagain 441 28,129 May 11, 2026, 05:41 PM
Last Post: chiki
  Google Dorks for finding SQL injection vulnerabilities and other security issues 1yush 69 3,734 May 11, 2026, 03:55 PM
Last Post: fkmonkey
  CVE-2024-32002 RCE PoC HA_twck 2 574 May 11, 2026, 01:33 PM
Last Post: newxiao1
  Cisco Secure Firewall Management Center(CVE-2026-20131) DirtyEra 0 143 May 11, 2026, 01:40 AM
Last Post: DirtyEra

Forum Jump:


 Users browsing this forum: 1 Guest(s)