############################################################################################################################### # Exploit Title : SuperStoreFinder Wordpress Plugins CSRF File Upload # Wordpress Plugins Affected : Super Store Finder | Super Interactive Maps | Super Logo Showcase # Exploit Type : Cross Site Request Forgery # Plugin URI: http://www.superstorefinder.net/ # Version : All versions from 6.1 and below , show inside file -> "/wp-content/plugins/superstorefinder-wp/super-store-finder.php" # Plugin Author : Joe Iz # Tested On : Windows # Google Dork : allinurl:"/plugins/superstorefinder-wp/" # allinurl:"/plugins/super-interactive-maps/" # allinurl:"/plugins/superlogoshowcase-wp/" # # Date : 08/10/2020 , 11:11 PM # Exploit Author : Eagle Eye # Greets : United Muslims Cyber Army Members # # VULN PATH : wp-content/plugins/superstorefinder-wp/ssf-wp-admin/pages/import.php # wp-content/plugins/superlogoshowcase-wp/sls-wp-admin/pages/import.php # wp-content/plugins/super-interactive-maps/sim-wp-admin/pages/import.php # ############################################################################################################################### # # CSRF Code : # #