WordPress 的 OTP 登录与注册 WooCommerce 插件存在一个认证绕过漏洞,根源在于 OTP 爆破(Brute Force)问题。该漏洞影响所有版本(包括 2.7.2 及更早版本)。 具体技术细节如下: 1. 速率限制失效: 中的 OTP 尝试计数器仅基于攻击者可控的 Cookie 中的 字段进行键控。攻击者只需轮换该 Cookie,即可无限次重置计数器,从而规避速率限制。 2. OTP 生成算法弱:OTP 使用 PHP 非密码学安全的 函数生成,且默认取值空间仅为 9,000 个可能值(1000
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| xootix | OTP Login & Register Woocommerce | ≤ 2.7.2 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| xootix | OTP Login & Register Woocommerce | 0 ~ 2.7.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet