WordPress是WordPress软件基金会的一套使用PHP语言开发的博客平台,该平台支持在PHP和MySQL的服务器上架设个人博客网站。iThemes Security(better-wp-security)plugin是使用在其中的一个用于防护网站入侵的安全插件。 WordPress iThemes Security(better-wp-security)插件7.0.3之前版本中存在SQL注入漏洞。远程攻击者可借助日志页面利用该漏洞注入SQL命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Exploit for CVE-2018-12636 | https://github.com/nth347/CVE-2018-12636_exploit | POC Details |
No public POC found.
Login to generate AI POC| CVE-2018-12656 | SLiMS 8 Akasia Membership模块跨站脚本漏洞 | |
| CVE-2018-12689 | phpLDAPadmin 安全漏洞 | |
| CVE-2018-12688 | tinyexr 输入验证漏洞 | |
| CVE-2018-12687 | tinyexr 输入验证错误漏洞 | |
| CVE-2018-12684 | CivetWeb 缓冲区错误漏洞 | |
| CVE-2018-12678 | Portainer 安全漏洞 | |
| CVE-2018-1000201 | ruby-ffi 安全漏洞 | |
| CVE-2018-12659 | SLiMS 8 Akasia 安全漏洞 | |
| CVE-2018-12658 | SLiMS 8 Akasia Stock Take模块跨站脚本漏洞 | |
| CVE-2018-12657 | SLiMS 8 Akasia Master File模块跨站脚本漏洞 | |
| CVE-2018-12633 | Linux kernel 安全漏洞 | |
| CVE-2018-12655 | SLiMS 8 Akasia Circulation模块跨站脚本漏洞 | |
| CVE-2018-12654 | SLiMS 8 Akasia Bibliography模块跨站脚本漏洞 | |
| CVE-2018-12649 | MISP 安全漏洞 | |
| CVE-2018-12648 | Exempi 安全漏洞 | |
| CVE-2018-12642 | Froxlor 访问控制错误漏洞 | |
| CVE-2018-12641 | GNU Binutils GNU libiberty 缓冲区错误漏洞 | |
| CVE-2018-12635 | Circontrol CirCarLife Scada 安全漏洞 | |
| CVE-2018-12634 | Circontrol CirCarLife Scada 安全漏洞 |
No comments yet