CVE-2025-5304
CRITICALPT Project Notebooks 1.0.0-1.1.3 - Unauthenticated Privilege Escalation via wpnb_pto_new_users_add()
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2025-5304. PoCs published by Boshe99, Nxploited.
AI-analyzed exploit summary The repository contains functional exploit code for CVE-2025-5304, targeting a WordPress plugin (3DPrint Lite 1.9.1.4) with an arbitrary file upload vulnerability. The Python script demonstrates the vulnerability by uploading a shell file to a vulnerable endpoint.
Description
The PT Project Notebooks plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization in the wpnb_pto_new_users_add() function in versions 1.0.0 through 1.1.3. This makes it possible for unauthenticated attackers to elevate their privileges to that of an administrator.
Exploits (2)
The repository contains functional exploit code for CVE-2025-5304, targeting a WordPress plugin (3DPrint Lite 1.9.1.4) with an arbitrary file upload vulnerability. The Python script demonstrates the vulnerability by uploading a shell file to a vulnerable endpoint.
This repository contains a functional exploit for CVE-2025-5304, targeting a privilege escalation vulnerability in the PT Project Notebooks WordPress plugin (versions 1.0.0-1.1.3). The exploit automates version detection, nonce extraction, and privilege escalation via a crafted AJAX request.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H