CVE-2025-1304
HIGHNewsBlogger < 0.2.5.1 - Authenticated Arbitrary File Upload via newsblogger_install_and_activate_plugin()
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2025-1304. PoCs published by Nxploited, Boshe99.
AI-analyzed exploit summary This Python script exploits an arbitrary file upload vulnerability in the WordPress NewsBlogger Theme (CVE-2025-1304) by logging in as an admin, extracting a nonce, and uploading a malicious plugin via an AJAX endpoint.
Description
The NewsBlogger theme for WordPress is vulnerable to arbitrary file uploads due to a missing capability check on the newsblogger_install_and_activate_plugin() function in all versions up to, and including, 0.2.5.1. This makes it possible for authenticated attackers, with subscriber-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible.
Exploits (2)
This Python script exploits an arbitrary file upload vulnerability in the WordPress NewsBlogger Theme (CVE-2025-1304) by logging in as an admin, extracting a nonce, and uploading a malicious plugin via an AJAX endpoint.
The repository contains functional exploit code for CVE-2025-1304, targeting an arbitrary file upload vulnerability in the WordPress Plugin 3DPrint Lite 1.9.1.4. The exploit script demonstrates the ability to upload a malicious file to a vulnerable target.
References (5)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H