# WordPress AI Engine 插件 <= 1.9.98 - 未经认证的任意文件上传漏洞
## 概述
Jordy Meow AI Engine: ChatGPT Chatbot 存在未受限制的危险类型文件上传漏洞(Unrestricted Upload of File with Dangerous Type)。
## 影响版本
影响版本:从 n/a 至 1.9.98
## 细节
攻击者可以上传具有潜在威胁的文件类型,导致系统安全隐患。
## 影响
该漏洞可能导致系统被恶意文件攻击,存在较大的安全风险。
# | POC 描述 | 源链接 | 神龙链接 |
---|---|---|---|
1 | AI Engine: ChatGPT Chatbot <= 1.9.98 - Unauthenticated Arbitrary File Upload via rest_upload | https://github.com/RandomRobbieBF/CVE-2023-51409 | POC详情 |
2 | AI Engine: ChatGPT Chatbot - Unauthenticated Arbitrary File Upload via rest_upload | https://github.com/imhunterand/CVE-2023-51409 | POC详情 |
3 | None | https://github.com/Nxploited/CVE-2023-51409 | POC详情 |
4 | Unrestricted Upload of File with Dangerous Type vulnerability in Jordy Meow AI Engine- ChatGPT Chatbot.This issue affects AI Engine- ChatGPT Chatbot- from n/a through 1.9.98. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-51409.yaml | POC详情 |
暂无评论