WordPress是WordPress(Wordpress)基金会的一套使用PHP语言开发的博客平台。该平台支持在PHP和MySQL的服务器上架设个人博客网站。 WordPress插件 ProfilePress 存在跨站脚本漏洞,该漏洞源于用户注册,用户配置文件,登录和会员注册小部件没有正确逃脱,可能被用于XSS攻击,从而导致WP -admin访问。此外,插件在一些地方将$ POST赋值为$ GET,这意味着在某些情况下,这可以只使用$ GET参数复制,而不需要$ POST值。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Unknown | User Registration, User Profile, Login & Membership – ProfilePress (Formerly WP User Avatar) | 3.1.11 ~ 3.1.11 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | The ProfilePress plugin for WordPress before 3.1.11 is vulnerable to unauthenticated reflected cross-site scripting (XSS) via the tabbed login/register widget due to improper escaping of user input. Attackers can inject arbitrary JavaScript via the tabbed-login-name parameter. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2021/CVE-2021-24522.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2021-24499 | Workreap theme < 2.2.2 - Unauthenticated Upload Leading to Remote Code Execution | |
| CVE-2021-24304 | Newsmag < 5.0 - Unauthenticated Reflected Cross-site Scripting (XSS) | |
| CVE-2021-24467 | Leaflet Map < 3.0.0 - Arbitrary Settings Update via CSRF Leading to Stored XSS | |
| CVE-2021-24495 | Marmoset Viewer < 1.9.3 - Reflected Cross Site Scripting | |
| CVE-2021-24500 | Workreap theme < 2.2.2 - Multiple CSRF + IDOR Vulnerabilities | |
| CVE-2021-24501 | Workreap theme < 2.2.2 - Missing Authorization Checks in Ajax Actions | |
| CVE-2021-24502 | WP Google Map < 1.7.7 - Authenticated Stored Cross-Site Scripting (XSS) | |
| CVE-2021-24505 | Forms < 1.12.3 - Authenticated Stored Cross-Site Scripting (XSS) | |
| CVE-2021-24507 | Astra Pro Addon < 3.5.2 - Unauthenticated SQL Injection | |
| CVE-2021-24509 | Page View Counts < 2.4.9 - Contributor+ Stored XSS | |
| CVE-2021-24520 | Stock in & out <= 1.0.4 - Authenticated SQL Injection | |
| CVE-2021-24521 | Side Menu Lite < 2.2.1 - Authenticated SQL Injection |
No comments yet