Hi,
Revslider is a huge Wordpress Plugin/Add-on, this making it big eye candy for a lot of hackers. The plugin use to be fairly famous and still is. There are still thousands of websites running the add-on which are vulnerable to a deface. This revslider 0day is pretty much like WebDAV, but this one only targets Wordpress websites. This exploit does not target the index.php directory, but you can change the HTML towards PHP and you can install a shell onto the web-server, or install malware on the target host. Revslider is called: "Slider Revolution" and it is the highly acclaimed Slide-Based displaying solution, thousands of businesses, theme developers and everyday
people use and love!" as said on there website: http://revolution.themepunch.com/
This is the script for the RevSlider 0DAY Exploit: http://pastebin.com/R6Eau2ps
Too change the deface rights, check line 40, and change it towards whatever hacktivism name you use.
Regards,
R00T
Comments
No Comments Exist
Be the first, drop a comment!