CVE-2013-5961
Lazy SEO 1.1.9 - Unauthenticated Arbitrary File Upload and Remote Code Execution via lazyseo.php
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2013-5961. PoCs published by Ashiyane Digital Security Team.
AI-analyzed exploit summary This is a writeup describing a shell upload vulnerability in the WordPress Lazy SEO plugin (version 1.1.9). It outlines steps to exploit the vulnerability by uploading a shell via the lazyseo.php file.
Description
Unrestricted file upload vulnerability in lazyseo.php in the Lazy SEO plugin 1.1.9 for WordPress allows remote attackers to execute arbitrary PHP code by uploading a PHP file, then accessing it via a direct request to the file in lazy-seo/.
Exploits (1)
This is a writeup describing a shell upload vulnerability in the WordPress Lazy SEO plugin (version 1.1.9). It outlines steps to exploit the vulnerability by uploading a shell via the lazyseo.php file.