Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
AdRotate Banner Manager <= 5.17.7 - Authenticated (Contributor+) PHP Code Injection via 'banner' Shortcode Attribute
Vulnerability Description
The AdRotate Banner Manager plugin for WordPress is vulnerable to PHP Code Injection in all versions up to, and including, 5.17.7 via the 'banner' attribute of the adrotate shortcode. This is due to insufficient input validation and sanitization of the banner shortcode attribute before concatenation into a PHP code string wrapped in W3 Total Cache mfunc or Borlabs Cache fragment markers. This makes it possible for authenticated attackers, with Contributor-level access and above, to execute arbitrary PHP code on the server. This vulnerability requires W3 Total Cache or Borlabs Cache support to be enabled in AdRotate settings.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
对生成代码的控制不恰当(代码注入)
Vulnerability Title
Arnan AdRotate Banner Manager 代码注入漏洞
Vulnerability Description
Arnan AdRotate Banner Manager是Arnan个人开发者的一款用于网站广告位管理与轮播展示的内容投放插件。 Arnan AdRotate Banner Manager 5.17.7及之前版本存在代码注入漏洞,该漏洞源于对banner短代码属性的输入验证和清理不充分,可能导致已认证的攻击者执行任意PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A