脆弱性情報
高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
脆弱性タイトル
FireBox Popups <= 3.1.7 - Unauthenticated Sensitive Information Exposure in 'form_id' Parameter
脆弱性説明
The FireBox Popups – Increase Sales and Grow Your Email List plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.1.7 via the 'form_id' parameter. This makes it possible for unauthenticated attackers to extract download a full CSV export of all form submissions — including any personally identifiable information submitted by users — for any arbitrary form_id.
CVSS情報
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
脆弱性タイプ
信息暴露
脆弱性タイトル
FirePlugins FireBox Popups – Increase Sales and Grow Your Email List 信息泄露漏洞
脆弱性説明
FirePlugins FireBox Popups – Increase Sales and Grow Your Email List是FirePlugins公司的一款增加销售和邮件列表的弹窗插件。 FirePlugins FireBox Popups – Increase Sales and Grow Your Email List 3.1.7及之前版本存在信息泄露漏洞,该漏洞源于通过'form_id'参数暴露敏感信息,可能导致未经身份验证的攻击者导出任意表单提交的完整CSV数据。
CVSS情報
N/A
脆弱性タイプ
N/A