Skip to content

YemiBeshe/Codepath-WP1

Repository files navigation

WordPress codepath week seven

Presentation on week7

EXPOIT 1:- Vulnerabilty CVE-2015-3440 WP version: 4.2 Remediation; Update to version: 4.7.5 Steps to exploit

  1. creat some post on the blog and logout .
  2. visit the blog
  3. let go to the post and add a comment, and your coment shloud include xss <svg/onload-alert('XSS')>

1. Then view page source to confirm code was injected

EXPOIT 2:- Vulnerabilty CVE-2018-6389 WP version: 4.2 Remediation; Update to version: 4.9 Steps to exploit

  1. Download py script https://github.com/Quitten/doser.py
  2. run py script on wp python doser.py -t 999 -g 'http://wpdistillery.vm' in brower try to visit WPdistilery.vp page is inaccesable becaouse of DOS attack

EPOit 3:- Vulnerabilty CVE-2017-1001000 WP version: 4.7 Remediation; Update to version: 4.8 Steps to exploit 1.log in to WP as admin 2.Post somthing 3.make sure the permalink setting are post name

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published