CVE-2024-8277 - Authentication Bypass in WooCommerce Photo Reviews by @bl4ckhatx
This is just a teaser. The full exploit’s for sale. Want to compromise thousands of sites? Hit me up. @bl4ckhatx
🎯 CVE-2024-8277: WooCommerce Exploit - Contact: @bl4ckhatx
A critical authentication bypass vulnerability in WooCommerce Photo Reviews Premium, affecting all versions ≤ 1.3.13.2. Exploit the login function to impersonate administrators, gaining full control of WordPress sites. Fast, silent, and efficient.
This repository contains an exploit for CVE-2024-8277, which affects the WooCommerce Photo Reviews Premium plugin for WordPress. The exploit takes advantage of an authentication bypass due to improper validation in the login function. Attackers can impersonate any user, including administrators, who dismissed an admin notice in the last 30 days. This makes it easy for unauthorized access to be gained on vulnerable websites.