/CVE-2019-14314

CVE-2019-14314 - NextGEN Gallery 3.2.10 Authenticated SQL Injection

Primary LanguagePython

CVE-2019-14314

CVE-2019-14314 - NextGEN Gallery 3.2.10 Authenticated SQL Injection

Usage

usage: cve_2019_14314.py [-h] url login_user login_pass username

CVE-2019-14314 Hash Extractor

positional arguments:
  url         Wordpress blog URL
  login_user  Username to login with
  login_pass  Password to login with
  username    Username to extract Password Hash from

optional arguments:
  -h, --help  show this help message and exit

Credit: https://www.fortinet.com/blog/threat-research/wordpress-plugin-sql-injection-vulnerability.html