Before we start I would like to bring your attention to this PSP course from Pentester Academy -
https://www.pentesteracademy.com/course?id=21. The course is focused on Powershell scripting which can be used in pentesting activities.
Description -
A powershell script to exploit WordPress Plugin Is-human 1.4.2 - Remote Command Execution and Lunar CMS 3.3 Unauthenticated Remote Command Execution vulnerability.
Exploit DB -
1. https://www.exploit-db.com/exploits/17299/
2. https://www.exploit-db.com/exploits/33867
Script Code -
Proof of Concept -
The script can be found on my github -
https://github.com/hexachordanu/PSP/blob/master/Exploits.ps1
This blog post has been created for completing the requirements of the SecurityTube PowerShell for Penetration Testers Certification Exam
https://www.pentesteracademy.com/course?id=21
Student ID: PSP-3250
https://www.pentesteracademy.com/course?id=21. The course is focused on Powershell scripting which can be used in pentesting activities.

( Image Source - xcart)
A powershell script to exploit WordPress Plugin Is-human 1.4.2 - Remote Command Execution and Lunar CMS 3.3 Unauthenticated Remote Command Execution vulnerability.
Exploit DB -
1. https://www.exploit-db.com/exploits/17299/
2. https://www.exploit-db.com/exploits/33867
Script Code -
Proof of Concept -
The script can be found on my github -
https://github.com/hexachordanu/PSP/blob/master/Exploits.ps1
This blog post has been created for completing the requirements of the SecurityTube PowerShell for Penetration Testers Certification Exam
https://www.pentesteracademy.com/course?id=21
Student ID: PSP-3250
Comments
Post a Comment