Exploitation Summary
EIP tracks 1 public exploit for CVE-2024-24926. PoCs published by moften.
AI-analyzed exploit summary The repository provides a description of CVE-2024-24926, a deserialization vulnerability in the WordPress Brooklyn theme (versions up to 4.9.7.6). It includes a PHP code snippet demonstrating how to serialize a malicious object, but lacks a full exploit or proof-of-concept for execution.
Description
Deserialization of Untrusted Data vulnerability in UnitedThemes Brooklyn | Creative Multi-Purpose Responsive WordPress Theme.This issue affects Brooklyn | Creative Multi-Purpose Responsive WordPress Theme: from n/a through 4.9.7.6.
Exploits (1)
The repository provides a description of CVE-2024-24926, a deserialization vulnerability in the WordPress Brooklyn theme (versions up to 4.9.7.6). It includes a PHP code snippet demonstrating how to serialize a malicious object, but lacks a full exploit or proof-of-concept for execution.
References (1)
Scores
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H