Temporary Advertisements:
Ad
Ad
Ad
new wordpress website takeover vuln (video + poc )
by zinzeur - Sunday January 14, 2024 at 04:28 PM
nice share
Reply
(Jan 14, 2024, 04:28 PM)zinzeur Wrote: This is a brand new vuln (released about 3 days ago) affecting wordpress websites (any version) with post smtp plugin installed version <=2.8.7 (latest is 2.8.9). It allows complete admin takeover by ressetting password and retrieving sent email from smtp log api . Enjoy !!
ps: The video is mine
video :
Enjoy
Reply
thank yoou brother

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Leeching. If you feel this is incorrect: /Forum-Ban-Appeals
Reply
(Jan 14, 2024, 04:28 PM)zinzeur Wrote: This is a brand new vuln (released about 3 days ago) affecting wordpress websites (any version) with post smtp plugin installed version <=2.8.7 (latest is 2.8.9). It allows complete admin takeover by ressetting password and retrieving sent email from smtp log api . Enjoy !!
ps: The video is mine
video :
Enjoy
Thanks for the share

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Leeching. If you feel this is incorrect: https://breached.hn/Forum-Ban-Appeals
Reply
lets seee
Reply
(Jan 14, 2024, 04:28 PM)zinzeur Wrote: This is a brand new vuln (released about 3 days ago) affecting wordpress websites (any version) with post smtp plugin installed version <=2.8.7 (latest is 2.8.9). It allows complete admin takeover by ressetting password and retrieving sent email from smtp log api . Enjoy !!
ps: The video is mine
video :
Enjoy

thank you so much
Reply
check it
Reply
(Jan 14, 2024, 04:28 PM)zinzeur Wrote: This is a brand new vuln (released about 3 days ago) affecting wordpress websites (any version) with post smtp plugin installed version <=2.8.7 (latest is 2.8.9). It allows complete admin takeover by ressetting password and retrieving sent email from smtp log api . Enjoy !!
ps: The video is mine
video :
Enjoy

thanks for sharing
Reply
(Jan 14, 2024, 04:28 PM)zinzeur Wrote: This is a brand new vuln (released about 3 days ago) affecting wordpress websites (any version) with post smtp plugin installed version <=2.8.7 (latest is 2.8.9). It allows complete admin takeover by ressetting password and retrieving sent email from smtp log api . Enjoy !!
ps: The video is mine
video :
Enjoy
Reply
(Jan 14, 2024, 04:28 PM)zinzeur Wrote: i hope link work and than you
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Buying one of the the exploit chains for MS Exchange (proxylogon or proxyshell) nightingal33 0 272 Yesterday, 09:26 AM
Last Post: nightingal33
  Dokan Pro Unauthenticated SQL Injection POC | CVSS 10 Loki 51 7,241 Yesterday, 07:12 AM
Last Post: ruroot
  Google Dorks for finding SQL injection vulnerabilities and other security issues 1yush 82 8,289 Sep 22, 2026, 03:12 PM
Last Post: kaliaur0274
  {SECRET} DATABASE OF EXPLOITS lulagain 470 38,777 Sep 22, 2026, 02:50 PM
Last Post: kaliaur0274
  0day-RCE-Apache OFBiz avix 0 1,989 Sep 11, 2026, 04:02 AM
Last Post: avix

Forum Jump:


 Users browsing this forum: 1 Guest(s)