WordPress 插件 PPWP: Password Protect Pages, Posts & Full or Partial Content 存在未授权数据访问漏洞。该漏洞源于 函数中权限检查不正确,影响 1.9.15 及以下所有版本。此漏洞使得具有“贡献者(Contributor)”及以上权限的已认证攻击者能够获取主密码(master-password),从而访问任何受密码保护的内容。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| buildwps | PPWP – Password Protect Pages | ≤ 1.9.15 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| buildwps | PPWP – Password Protect Pages | 0 ~ 1.9.15 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet