new wordpress website takeover vuln (video + poc )
by zinzeur - Sunday January 14, 2024 at 04:28 PM
#41
thanks, Hot thread
Reply
#42
(Jan 14, 2024, 04:28 PM)zinzeur Wrote: This is a brand new vuln (released about 3 days ago) affecting wordpress websites (any version) with post smtp plugin installed version <=2.8.7 (latest is 2.8.9). It allows complete admin takeover by ressetting password and retrieving sent email from smtp log api . Enjoy !!
ps: The video is mine
video :
Enjoy

ok lets seeee what we get ......

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Advertising telegram in stealer logs
Reply
#43
thanks for sharing my bro

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Leeching | http://c66go4clkqodr7tdjfu76jztjs7w7d3fajdeypxn73v4ju3dt7g5yyyd.onion/Forum-Ban-Appeals if you feel this is incorrect.
Reply
#44
thank you very much
Reply
#45
nice bro thanks for sharing
Reply
#46
zzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzz

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Spamming | CC
Reply
#47
Nice info. Check it.
Reply
#48
Great to see this
Reply
#49
thanks for the info!
Reply
#50
letss check! thanks for the data
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  New Zer0 Day Wordpress A3g00n 83 3,972 Yesterday, 08:17 PM
Last Post: j4ng0
  {SECRET} DATABASE OF EXPLOITS lulagain 441 28,056 Yesterday, 05:41 PM
Last Post: chiki
  Google Dorks for finding SQL injection vulnerabilities and other security issues 1yush 69 3,613 Yesterday, 03:55 PM
Last Post: fkmonkey
  CVE-2024-32002 RCE PoC HA_twck 2 557 Yesterday, 01:33 PM
Last Post: newxiao1
  Cisco Secure Firewall Management Center(CVE-2026-20131) DirtyEra 0 130 Yesterday, 01:40 AM
Last Post: DirtyEra

Forum Jump:


 Users browsing this forum: 4 Guest(s)