
wp-file-manager 6.7 (2020년 8월) WordPress 플러그인 0day - 원격 코드 실행
elFinder 취약점은 잘 알려진 취약점이며, 제 스크립트는 경로를 "/wp-content/plugins/wp-file-manager/"로 변경할 뿐입니다. 스크립트 수정이나 기타 다른 것을 요청하지 마세요. RTFM...
참조:
https://www.exploit-db.com/exploits/46481
https://www.exploit-db.com/exploits/46539
https://twitter.com/w4fz5uck5/status/1303396627198152707
https://wpvulndb.com/vulnerabilities/10389