Home / os / win10

WordPress Pie Register 3.7.1.4 Authentication Bypass / Remote Code Execution

Posted on 02 November 2021

This Metasploit module uses an authentication bypass vulnerability in Wordpress Pie Register plugin versions 3.7.1.4 and below to generate a valid cookie. With this cookie, hopefully of the admin, it will generate a plugin, pack the payload into it and upload it to a server running WordPress.

 

TOP