Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-37598 PoC — WordPress WP Cerber 安全漏洞

Source
Associated Vulnerability
Title:WordPress WP Cerber 安全漏洞 (CVE-2021-37598)
Description:WP Cerber before 8.9.3 allows bypass of /wp-json access control via a trailing ? character.
Description
WP Cerber < 8.9.3 contains a bypass of /wp-json access control caused by improper handling of trailing '?' character, letting unauthorized users access protected REST API endpoints, exploit requires sending a request with a trailing '?'.
File Snapshot

id: CVE-2021-37598 info: name: WP Cerber < 8.9.3 - Broken Access Control author: theamanrawat ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →