Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1110 CNY

100%

CVE-2024-44000 PoC — WordPress LiteSpeed Cache plugin < 6.5.0.1 - Unauthenticated Account Takeover via Cookie Leak vulnerability

Source
Associated Vulnerability
Title:WordPress LiteSpeed Cache plugin < 6.5.0.1 - Unauthenticated Account Takeover via Cookie Leak vulnerability (CVE-2024-44000)
Description:Insufficiently Protected Credentials vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Authentication Bypass.This issue affects LiteSpeed Cache: from n/a through < 6.5.0.1.
Description
LiteSpeed Unauthorized Account Takeover
Readme
# CVE-2024-44000
LiteSpeed Unauthorized Account Takeover

PoC is now published. It was created for educational/research purposes only! Use it at your own risk!
![Screenshot 2024-09-06 at 16 41 04](https://github.com/user-attachments/assets/333eb162-464c-44a5-af3f-0bbcf46f1d8f)
File Snapshot

[4.0K] /data/pocs/1ed7a9c4bf65d83272fa85c18113b9a36fac18d5 ├── [2.2K] exploit.py └── [ 278] README.md 0 directories, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →