Navigation X
ALERT
Click here to register with a few steps and explore all our cool stuff we have to offer!



   481

CVE-2024-27956

by iShagg - 09 May, 2024 - 01:05 AM
This post is by a banned member (iShagg) - Unhide
iShagg  
Registered
49
Posts
7
Threads
2 Years of service
#1
Here's a cool find I'm sure someone could use:

Attack Surface: Wordpress plugin - https://valvepress.com
Vulnerability: SQLI
Description: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ValvePress Automatic allows SQL Injection.This issue affects Automatic: from n/a through 3.92.0.

Exploit: https://github.com/diego-tella/CVE-2024-27956-RCE/


I feel like this would be an easy exploit to automate. Enjoy :)
This post is by a banned member (iShagg) - Unhide
iShagg  
Registered
49
Posts
7
Threads
2 Years of service
Bumped #2
This is a bump
This post is by a banned member (iShagg) - Unhide
iShagg  
Registered
49
Posts
7
Threads
2 Years of service
Bumped #3
This is a bump
This post is by a banned member (iShagg) - Unhide
iShagg  
Registered
49
Posts
7
Threads
2 Years of service
Bumped #4
This is a bump

Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
or
Sign in
Already have an account? Sign in here.


Forum Jump:


Users browsing this thread: 1 Guest(s)