WordPress 插件 Ad Inserter – Ad Manager & AdSense Ads 在 2.8.16 及之前所有版本中存在授权绕过漏洞,原因是 URL 参数缺少相应的能力检查(capability check)。这使得未认证的攻击者能够查看由管理员配置但已从公共显示中禁用的页眉和页脚代码块。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| spacetime | Ad Inserter – Ad Manager & AdSense Ads | 0 ~ 2.8.16 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet