WordPress是WordPress软件基金会的一套使用PHP语言开发的博客平台,该平台支持在PHP和MySQL的服务器上架设个人博客网站。User Profile&Membership plugin是使用在其中的一个网站会员注册插件。 WordPress User Profile&Membership插件2.0.11之前版本中存在跨站脚本漏洞。远程攻击者可借助wp-admin/admin.php?page=um_options§ion=account页面的‘Account Deletion C
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-10303 | Foxit Reader和PhantomPDF 安全漏洞 | |
| CVE-2017-7893 | SaltStack Salt 安全漏洞 | |
| CVE-2018-10302 | Foxit Reader和PhantomPDF 安全漏洞 | |
| CVE-2017-17833 | OpenSLP 安全漏洞 | |
| CVE-2018-10300 | WordPress Web-Dorado Instagram Feed WD插件跨站脚本漏洞 | |
| CVE-2018-10301 | WordPress Web-Dorado Instagram Feed WD插件跨站脚本漏洞 | |
| CVE-2018-8880 | Lutron Quantum BACnet Integration 安全漏洞 | |
| CVE-2018-9921 | CMS Made Simple 路径遍历漏洞 | |
| CVE-2018-10233 | WordPress User Profile&Membership插件跨站请求伪造漏洞 | |
| CVE-2018-10299 | Beauty Ecosystem Coin smart contract 数字错误漏洞 |
No comments yet