WordPress是WordPress软件基金会的一套使用PHP语言开发的博客平台,该平台支持在PHP和MySQL的服务器上架设个人博客网站。wp-concours plugin是使用在其中的一个比赛创建插件。 WordPress wp-concours插件1.1及之前的版本中存在跨站脚本漏洞。远程攻击者可通过向includes/concours_page.php文件发送‘result_message’参数利用该漏洞注入任意的Werb脚本或HTML。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2017-17763 | SuperBeam 安全漏洞 | |
| CVE-2017-17761 | Ichano AtHome IP Camera 安全漏洞 | |
| CVE-2017-17744 | WordPress custom-map插件跨站脚本漏洞 | |
| CVE-2017-17753 | WordPress esb-csv-import-export插件跨站脚本漏洞 | |
| CVE-2013-6465 | JBPM KIE Workbench 跨站脚本漏洞 | |
| CVE-2017-15048 | Zoom client for Linux 缓冲区错误漏洞 | |
| CVE-2017-15049 | Zoom client for Linux 安全漏洞 | |
| CVE-2017-16786 | Meinberg LANTIME Web Configuration Utility 安全漏洞 | |
| CVE-2017-17088 | Flexense SyncBreeze Enterprise 安全漏洞 | |
| CVE-2017-17757 | TP-Link TL-WVR和TL-WAR 安全漏洞 | |
| CVE-2017-17758 | TP-Link TL-WVR和TL-WAR 安全漏洞 | |
| CVE-2017-17759 | Conarc iChannel 安全漏洞 |
No comments yet