WordPress 的 ACPT(Premium)插件存在远程代码执行漏洞,该漏洞影响所有版本直至并包括 2.0.66 版本,漏洞位于 render 函数中。此问题源于 REST API 表单创建端点缺少权限能力检查,以及在使用 Twig 环境渲染电子邮件模板时未进行沙箱隔离。这使得具备订阅者及以上权限的认证攻击者能够在服务器上执行任意代码。利用该漏洞时,攻击者需首先通过 REST API 端点创建一个包含恶意 email_settings 的表单,然后触发该表单的提交操作,以执行注入的 Twig 表达式。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Mauro Cassani | ACPT (Premium) | 0 ~ 2.0.66 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet