WordPress 插件是WordPress开源的一个应用插件。 WordPress插件在0.6.5之前存在SQL注入漏洞,该漏洞源于在0.6.5之前的Meta WordPress插件的导出用户没有转义要导出的角色列表,然后在导出功能的SQL语句中使用它们,管理员可以使用,导致一个经过验证的SQL注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Unknown | Export Users With Meta | 0.6.5 ~ 0.6.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet