
wp-file-manager 6.7 (Aug. 2020) Wordpress Plugin 0day - Remotecodeausführung
Die elFinder-Sicherheitslücke ist eine bekannte Sicherheitslücke; mein Skript ändert nur den Pfad zu "/wp-content/plugins/wp-file-manager/". Hört auf, Fixes im Skript oder sonst etwas für mich anzufordern. RTFM...
Referenzen:
https://www.exploit-db.com/exploits/46481
https://www.exploit-db.com/exploits/46539
https://twitter.com/w4fz5uck5/status/1303396627198152707
https://wpvulndb.com/vulnerabilities/10389