Hacker News
new
past
comments
ask
show
jobs
points
by
dcrazy
17 hours ago
|
comments
by
strictnein
17 hours ago
|
next
[-]
You don't need an RCE for that though. There's a lot of vulnerable plugins deployed everywhere.
reply
by
dcrazy
15 hours ago
|
parent
|
[-]
Ok, but an RCE in WP Core still seems pretty dang valuable, especially if you want to hit non-commercial websites that are less likely to have as many plugins installed?
reply
by
illliillll
16 hours ago
|
prev
|
[-]
You already owned the WordPress admin with your browser 0day, you don’t care if WordPress is secure or not.
reply