Skip to content

( Wordpress Exploit ) Wordpress Multiple themes - Unauthenticated Arbitrary File Upload

License

Notifications You must be signed in to change notification settings

KTN1990/CVE-2022-0316_wordpress_multiple_themes_exploit

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

17 Commits
 
 
 
 
 
 
 
 

Repository files navigation

Wordpress Multiple themes - Unauthenticated Arbitrary File Upload

CVE-2022-0316 Unauthenticated Arbitrary File Upload in multiple themes from ChimpStudio and PixFill.

For more exploits and exclusive ones contact me on telegram @KtN1990.

Themes Effected

  • westand
  • footysquare
  • aidreform
  • statfort
  • club-theme
  • kingclub-theme
  • spikes
  • spikes-black
  • soundblast
  • bolster
  • rocky-theme
  • bolster-theme
  • theme-deejay
  • snapture
  • onelife
  • churchlife
  • soccer-theme
  • faith-theme
  • statfort-new

Usage

To run this exploit you need to have python 3 and websites list then execute

  python3 exploit.py -l list.txt -t 100
Parameter Type Description
-l string Required. Your webistes list
-t int threads number ( 100 by default)

Contact

More Exploits, Check Megatron!

Logo

  • Provides an easy and efficient way to assess and exploit Wordpress security holes for mass purposes.
  • 97+ Exploits, all types (RCE, LOOTS, AUTHBYPASS...).
  • Customizable config.
  • Monthly Free updates including more code opitmization, fixing bugs, adding more exploits plus 0days.
  • Strong code base and custom threading and process model using a tasks management feature, getting reliable results is assured; no need to talk about speed since at KTN we use unconventional methods for concurrency.
  • Telegram Channel

Demo

IMAGE ALT TEXT HERE

License

MIT

About

( Wordpress Exploit ) Wordpress Multiple themes - Unauthenticated Arbitrary File Upload

Topics

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages