Web: https://systemweakness.com/how-to-get-a-reverse-shell-from-any-wordpress-d12e2f7a3033?source=rss----f20a9840e177---4

March 15, 2023, 12:52 p.m. | Mr Jokar

System Weakness - Medium systemweakness.com

How to get a Reverse Shell from any Wordpress ?

The scenario : We are pentesting a wordpress site & eventually got admin credentials. After logging in, we get an admin dashboard from where we can edit themes or plugins.

From this situation, a proper reverse shell can be gained leveraging what we already have. Let’s talk about this.


First go to Appearance > Editor > 404 Template from the admin dashboard left hand corner.

You will see …

cyber-sec reverse reverse shell shell vulnerability wordpress wordpress-theme-download

Product Security Architect / Red Team PenTester for AUTOSAR (m/w/d)

@ Bosch Group | Stuttgart, Germany

Cloud Security Engineer - 100% US REMOTE

@ Experian | Allen, TX, United States

System Security Analyst

@ Ashburn Consulting | Baltimore, MD, United States

Senior Advisor, Cyber

@ NielsenIQ | Chicago, IL, United States

Junior Application Security Engineer

@ Netcompany-Intrasoft | Athens, Greece

IT and process Control Security Architect

@ Statkraft | Oslo, Norway

Data Scientist, Sr. Consultant - Cybersecurity AI Research & Products

@ Visa | Ashburn, VA, United States

Senior Platform Security Engineer

@ Block | Melbourne, Australia

Snr Security Engineer (cloud)

@ Verisk | Málaga, Spain

Cybersecurity Analyst

@ Visa | Bengaluru, India

Information Security Engineer

@ ServiceNow | Orlando, FL, United States

Director of Cloud Security - 100% US REMOTE

@ Experian | Allen, TX, United States