JupiterX Core是一款Wordpress高级视图插件。 JupiterX Core Plugin 2.0.6 版本及之前版本存在访问控制错误漏洞,攻击者利用该漏洞可查看站点配置和登录用户、修改发布条件或执行拒绝服务攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ArtBees | Jupiter X Core | 2.0.6 ~ 2.0.6 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-1654 | 8.8 HIGH | Jupiter Theme <= 6.10.1 and JupiterX Core Plugin <= 2.0.7 - Authenticated Privilege Escala |
| CVE-2022-1657 | 8.8 HIGH | JupiterX Theme <= 2.0.6 and Jupiter Theme <= 6.10.1 - Authenticated Path Traversal and Loc |
| CVE-2022-1656 | 5.4 MEDIUM | JupiterX Theme <= 2.0.6 and JupiterX Core <= 2.0.6 - Authenticated Arbitrary Plugin Deacti |
| CVE-2022-1658 | 5.4 MEDIUM | Jupiter Theme <= 6.10.1 - Authenticated Arbitrary Plugin Deletion |
No comments yet