Path: blob/master/documentation/modules/auxiliary/admin/http/wp_masterstudy_privesc.md
32004 views
Vulnerable Application
MasterStudy LMS, a WordPress plugin, prior to 2.7.6 is affected by a privilege escalation where an unauthenticated user is able to create an administrator account for wordpress itself.
The vulnerable version is available on WordPress' plugin directory.
Verification Steps
msfconsoleuse auxiliary/admin/http/wp_masterstudy_privescset RHOSTS <rhost>run
Options
USERNAME
Set a USERNAME if desirable. Defaults to empty, and random generation.
PASSWORD
Set a PASSWORD if desirable. Defaults to empty, and random generation.
Set a EMAIL if desirable. Defaults to empty, and random generation.