
Hack WordPress site with SQL injection
As requested by few of you i decided to make this small tutorial on how to hack a wordpress site that has an SQLi in plugin.
So lets begin.
I will use this 0day here by AMY hacker.
First of all we need to find a vulnerable page.
We enter this in Google:
Code:
# Dork 1 (config.php)
inurl:"/wp-content/plugins/hd-webplayer/config.php?id="
#...