Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2025-6934 — Automates exploitation of a critical unauthenticated privilege escalation flaw in the WordPress Opal Estate Pro plugin by crafting a registration request that grants administrator access. | Kitploit
Tools/GitHubGitHub/0xterror/cve-2025-6934
Privilege EscalationPayload GenerationVulnerability AnalysisExploitationWeb Application ExploitationPenetration Testing
GitHub0xterror/cve-2025-6934

CVE-2025-6934

Automates exploitation of a critical unauthenticated privilege escalation flaw in the WordPress Opal Estate Pro plugin by crafting a registration request that grants administrator access.

View Repository
6 months agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2025-6934

🛡️ CVE-2025-6934 - Unauthenticated Privilege Escalation in Opal Estate Pro 📝 Description The Opal Estate Pro – Property Management and Submission plugin for WordPress, used by the FullHouse - Real Estate Responsive WordPress Theme, is vulnerable to Privilege Escalation in all versions up to and including 1.7.5.

CVE ID: CVE-2025-6934 CVSS Score: 9.8 (Critical) Published: June 30, 2025

⚙️ Script Information This Python exploit automates the privilege escalation process by:

Verifying the vulnerable plugin version via readme.txt. Fetching the required nonce from the registration page. Sending a crafted registration request to gain Administrator access.

Download Tool