
Modified the CVE-2024-25600
(original -> https://github.com/K3ysTr0K3R/CVE-2024-25600-EXPLOIT)
一个针对 CVE-2024-25600 的 Python 漏洞利用程序——WordPress Bricks Builder 远程代码执行漏洞。
该工具利用了 WordPress Bricks Builder 插件中的一个关键漏洞,允许未认证的远程代码执行。漏洞存在于 render_element 函数中,该函数对用户输入处理不当,从而允许执行任意 PHP 代码。
pip3 install requests beautifulsoup4 rich prompt_toolkit
使用方式:
python3 cve-2024-25600.py -u https://example.com/