WordPress Code Engine是WordPress基金会的一款 WordPress 代码片段管理插件。 WordPress Code Engine 0.3.5及之前版本存在命令注入漏洞,该漏洞源于未限制代码注入功能访问,可能导致经过身份验证的攻击者(具有贡献者级别及以上权限)在服务器上执行代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| tigroumeow | Code Engine – PHP Snippets, AI Functions & Automation for WordPress | ≤ 0.3.5 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| tigroumeow | Code Engine – PHP Snippets, AI Functions & Automation for WordPress | 0 ~ 0.3.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No comments yet