Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in deans_permalinks_migration.php in the Dean's Permalinks Migration 1.0 plugin for WordPress allows remote attackers to modify the oldstructure (aka dean_pm_config[oldstructure]) configuration setting as administrators via the old_struct parameter in a deans_permalinks_migration.php action to wp-admin/options-general.php, as demonstrated by placing an XSS sequence in this setting.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WordPress的 Dean's Permalinks Migration 'deans_permalinks_migration.php'跨站请求伪造漏洞
Vulnerability Description
WordPress的 Dean's Permalinks Migration 1.0插件中的deans_permalinks_migration.php脚本调用wp-admin/options-general.php存在多个跨站脚本漏洞, 远程攻击者通过old_struct参数以管理员权限修改oldstructure配置信息。例如在设置中放置一个XSS序列。
CVSS Information
N/A
Vulnerability Type
N/A