Back to directory
WRITEUP #2079

Code Injection and SQLi in WP ALL Export Pro

SQL InjectionSecurity code review
by@p3n7a90n(p3n7a90n)
Bounty
500
Program
-
Published
Oct 14, 2022
Added to HackDex
Oct 17, 2022
Read Full Writeuphttps://payatu.com/blog/p3n7a90n/wp-all-export-pro
RELATED WRITEUPS
Breaking Down Barriers: Exploiting Pre-Auth SQL Injection In WhatsUp Gold - CVE-2024-6670
SQL InjectionReverse engineering
Exploiting authorization by nonce in WordPress plugins
RCEArbitrary file upload
Directory Traversal, SQL Injection and Server-Side Request Forgery
SQL InjectionPath traversal
Getting code execution on Veeam through CVE-2023-27532
RCEInsecure deserialization
Spip Preauth RCE 2024: Part 2, A Big Upload
RCEFile upload

Built with ❤️ by Shubham Rawat