尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| Unknown | Professional Social Sharing Buttons, Icons & Related Posts – Shareaholic | 9.7.6 ~ 9.7.6 | - |
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | WordPress Shareaholic plugin prior to 9.7.6 is susceptible to information disclosure. The plugin does not have proper authorization check in one of the AJAX actions, available to both unauthenticated (before 9.7.5) and authenticated (in 9.7.5) users, allowing them to possibly obtain sensitive information such as active plugins and different versions (PHP, cURL, WP, etc.). | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2022/CVE-2022-0594.yaml | POC详情 |
未找到公开 POC。
登录以生成 AI POC| CVE-2022-2341 | WordPress plugin Simple Page Transition 跨站脚本漏洞 | |
| CVE-2022-2340 | WordPress plugin W-DALIL 跨站脚本漏洞 | |
| CVE-2022-2299 | WordPress plugin Allow SVG Files 跨站脚本漏洞 | |
| CVE-2022-2240 | WordPress plugin Request a Quote 跨站脚本漏洞 | |
| CVE-2022-2239 | WordPress plugin Request a Quote 跨站脚本漏洞 | |
| CVE-2022-2219 | WordPress plugin Unyson 跨站脚本漏洞 | |
| CVE-2022-2189 | WordPress plugin WP Video Lightbox 跨站脚本漏洞 | |
| CVE-2022-2115 | WordPress plugin Popup Anything 跨站脚本漏洞 | |
| CVE-2022-2072 | WordPress plugin Name Directory 跨站脚本漏洞 | |
| CVE-2022-2071 | WordPress plugin Name Directory 跨站请求伪造漏洞 | |
| CVE-2022-1551 | WordPress plugin SP Project & Document Manager 信息泄露漏洞 | |
| CVE-2022-1539 | WordPress plugin Exports and Reports 安全漏洞 | |
| CVE-2022-0899 | WordPress plugin Header Footer Code Manager 跨站脚本漏洞 |
暂无评论