
Remote Code Execution im Social Warfare Plugin vor Version 3.5.3 für WordPress.
Remote Code Execution im Social Warfare Plugin vor 3.5.3 für Wordpress. Dieser PoC erfordert keinen zusätzlichen HTTP-Server. Geben Sie einfach Ihre lokale IP und den gewünschten Port an, und der Exploit wird einen Server in einem eigenen Thread erstellen.
usage: CVE-2019-9978.py [-h] -t TARGET -l LHOST -p LPORT -c COMMAND
options:
-h, --help show this help message and exit
-t TARGET, --target TARGET
Target URL or IP
-l LHOST, --lhost LHOST
Local IP adress
-p LPORT, --lport LPORT
Local HTTP server port
-c COMMAND, --command COMMAND
Command to execute on the target
