# MASS-CVE-2024-27956-RCE
A PoC for CVE-2024-27956, a SQL Injection in ValvePress Automatic plugin. This PoC exploit the vulnerability creating a user in the target and giving Administrator rights. Being an administrator in wordpress can lead to Remote Code Execution.
<h1>Usage</h1>
```
git clone https://github.com/itzheartzz/MASS-CVE-2024-27956/
cd MASS-CVE-2024-27956
python3 exploit.py list.txt
```
[4.0K] /data/pocs/08a9be1f74eccb0bb1319fcb7910d6914396c6ea
├── [3.1K] exploit.py
└── [ 406] README.md
0 directories, 2 files