Skip to content

Templated detector for wp2shell CVE-2026-63030 - #875

Open
alessandro-Doyensec wants to merge 3 commits into
google:masterfrom
doyensec:wp2shell-cve-2026-63030
Open

Templated detector for wp2shell CVE-2026-63030#875
alessandro-Doyensec wants to merge 3 commits into
google:masterfrom
doyensec:wp2shell-cve-2026-63030

Conversation

@alessandro-Doyensec

@alessandro-Doyensec alessandro-Doyensec commented Aug 4, 2026

Copy link
Copy Markdown
Collaborator

Templated detector for wp2shell CVE-2026-63030.

Testbed at:


Notes:

  • The detector doesn't exploit the full RCE chain to avoid state-changing requests (the PoCs published so far all exploit the SQL injection to create an admin account during the exploit chain).
  • The presence and exploitability of both CVE-2026-63030 and CVE-2026-60137 are proven by exploiting the SQL injection: the detector makes the SQL server calculate a simple multiplication and expects the final product to be in the response body

@savio-doyensec

Copy link
Copy Markdown
Contributor

LGTM.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants