Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-28121 PoC — WordPress plugin WooCommerce Payments 授权问题漏洞

Source
Associated Vulnerability
Title:WordPress plugin WooCommerce Payments 授权问题漏洞 (CVE-2023-28121)
Description:An issue in WooCommerce Payments plugin for WordPress (versions 5.6.1 and lower) allows an unauthenticated attacker to send requests on behalf of an elevated user, like administrator. This allows a remote, unauthenticated attacker to gain admin access on a site that has the affected version of the plugin activated.
Description
Python 2.7
Readme
# WP-CVE-2023-28121

<p>WooCommerce Payments < 5.6.2 - Unauthenticated Privilege Escalation</p>

Python 2.7

Buy Coffee :
<li>Bitcoin $: 31mtLHqhaXXyCMnT2EU73U8fwYwigiEEU1</li>
<li>Perfect Money $: U22270614</li>
<li>Saweria $: https://saweria.co/Shin403</li>
<li>Trakteer $: https://trakteer.id/shin403</li>
<li>Buymeacoffee $: https://www.buymeacoffee.com/shin.code</li>

![Screenshot_2023-11-03-08-18-56-663-edit_com termux](https://github.com/Jenderal92/WP-CVE-2023-28121/assets/59664965/435320ec-d86c-4548-9656-c71dd593a49f)


# How To Use?

<li>Install Python 2.7 <a href="https://www.python.org/ftp/python/2.7.17/python-2.7.17.amd64.msi"> Download Here</a></li>
<li>python file.py</li>
<p>Reff : https://wpscan.com/vulnerability/0f78a245-866c-462e-bd23-43dfadb57072/</p>
File Snapshot

[4.0K] /data/pocs/a551d921f9cf70392a91b59ce7429f3d0e29256b ├── [2.9K] CVE-2023-28121.py └── [ 778] README.md 0 directories, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →