漏洞标题
Embed Any Document 插件 2.7.5及以下版本存在认证的(贡献者+)盲服务端请求伪造漏洞
漏洞描述信息
WordPress插件Embed Any Document – Embed PDF, Word, PowerPoint and Excel Files 在所有版本中(包括2.7.5版本)存在服务端请求伪造漏洞,该漏洞通过'embeddoc'短代码触发。这使得具有贡献者级别及以上权限的认证攻击者能够从Web应用发起对任意位置的Web请求,并可用于查询和修改内部服务中的信息。
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
漏洞类别
服务端请求伪造(SSRF)
漏洞标题
Embed Any Document – Embed PDF, Word, PowerPoint and Excel Files <= 2.7.5 - Authenticated (Contributor+) Blind Server-Side Request Forgery via embeddoc Shortcode
漏洞描述信息
The Embed Any Document – Embed PDF, Word, PowerPoint and Excel Files plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 2.7.5 via the 'embeddoc' shortcode. This makes it possible for authenticated attackers, with Contributor-level access and above, to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N
漏洞类别
服务端请求伪造(SSRF)