WordPress是WordPress软件基金会的一套使用PHP语言开发的博客平台,该平台支持在PHP和MySQL的服务器上架设个人博客网站。Shareaholic是其中的一个社交内容挖掘及分享平台插件。 WordPress Shareaholic插件7.6.1.0之前版本的admin.php脚本中存在跨站脚本漏洞,该漏洞源于wp-admin/admin-ajax.php脚本没有充分过滤shareaholic_add_location操作中的‘location[id]’参数。远程攻击者可利用该漏洞注入任意
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2015-1653 | Microsoft SharePoint 跨站脚本漏洞 | |
| CVE-2015-2831 | das_watchdog 缓冲区溢出漏洞 | |
| CVE-2014-9146 | Fiyo CMS 跨站脚本漏洞 | |
| CVE-2014-9145 | Fiyo CMS SQL注入漏洞 | |
| CVE-2015-3293 | Fortinet FortiMail 安全漏洞 | |
| CVE-2015-1662 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-1661 | Microsoft Internet Explorer ASLR 绕过漏洞 | |
| CVE-2015-1660 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-1659 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-1657 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-1665 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-1652 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-1651 | Microsoft Office组件释放后使用漏洞 | |
| CVE-2015-1650 | Microsoft Office组件释放后使用漏洞 | |
| CVE-2015-1649 | Microsoft Office组件释放后使用漏洞 | |
| CVE-2015-1648 | Microsoft .NET Framework ASP.NET 信息泄漏漏洞 | |
| CVE-2015-1647 | Microsoft Windows Hyper-V 拒绝服务漏洞 | |
| CVE-2015-1646 | Microsoft MSXML同源策略安全功能绕过漏洞 | |
| CVE-2015-1645 | Microsoft Windows EMF处理远程执行代码漏洞 | |
| CVE-2015-1644 | Microsoft Windows MS-DOS设备名称特权提升漏洞 |
Showing top 20 of 64 CVEs. View all on vendor page → →
No comments yet