OpenExploit
  • Home
  • About
  • Contact
Sign in Subscribe

Latest

How To Exploit Arbitrary Code in WordPress File Manager Plugin | CVE-2020-25213

Exploiting Arbitrary Code in WP File Manager | CVE-2020-25213

The File Manager plugin (wp-file-manager) before version 6.9 for WordPress has a vulnerability that allows remote attackers to upload and execute arbitrary PHP code. The vulnerability arises from the plugin renaming an unsafe example elFinder connector file to have the .php extension, enabling attackers to use elFinder commands to

20 Jan 2025
How to Exploit File Upload in Mara CMS | CVE-2020-25042

How to Exploit File Upload in Mara CMS | CVE-2020-25042

Mara CMS 7.5 has a security vulnerability in which there is an arbitrary file upload issue. To exploit this vulnerability, an attacker needs to have a valid authenticated session as an admin or manager. The attacker can then make a request to 'codebase/dir.php?type=filenew'

13 Jan 2025
How to Exploit SQLi in rConfig | CVE-2020-10220

How to Exploit SQLi in rConfig | CVE-2020-10220

An issue was discovered in rConfig through version 3.9.4, where the web interface is vulnerable to SQL injection through the "searchColumn" parameter in "commands.inc.php". This vulnerability could allow attackers to manipulate the database and access sensitive information. Disclaimer The content provided here

06 Jan 2025
See all
OpenExploit
  • Privacy Policy
  • Disclaimer
  • Terms & Conditions
Powered by Ghost

OpenExploit

Cybersecurity blog with daily tips, guides, and resources for students and enthusiasts