Can't figure out this link injection

https://www.exploit-db.com/
^ Search "Wordpress" there is ton of XSS exploits, Which can be used to modify content of the page. Also not all the exploits are published :)


P.S i've reported the hack to the owners of the sites you listed and some other sites.


Edit: Check this too -> https://wpvulndb.com/wordpresses

Interesting... this stuff is a bit over my head but yeah wild I can imagine some guys are just working this to the fullest right now. Good you contacted the site owners, I'm sure none of us would appreciate having those ghost pages on our sites either.
 
Back
Top