The Ultimate Member WordPress plugin before 2.6.7 does not prevent visitors from creating user accounts with arbitrary capabilities, effectively allowing attackers to create administrator accounts at will. This is actively being exploited in the wild.
PoC: CVE-2023-3460
Exploit for CVE-2023-3460. Unauthorized admin access for Ultimate Member plugin < v2.6.7
PoC: Mass-CVE-2023-3460
Mass CVE-2023-3460.
PoC: CVE-2023-3460_FIX
Cái này dựng lên với mục đích cho ae tham khảo, chê thì đừng có xem. :))))
PoC: CVE-2023-3460_POC
GitHub repository for CVE-2023-3460 POC
PoC: CVE-2023-3460
Exploit for the vulnerability of Ultimate Member Plugin.
PoC: CVE-2023-3460
Exploit and scanner for CVE-2023-3460
PoC: CVE-2023-3460
CVE-2023-3460
PoC: CVE-2023-3460
CVE-2023-3460
PoC: CVE-2023-3460-obgen
CVE-2023-3460
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Get alerted for CVEs like this
Register your stack and get notified within minutes when a matching CVE drops.
Start monitoring free