以下是对该漏洞描述的中文翻译: Shared Files WordPress 插件在 1.7.67 之前,以及 shared-files-pro WordPress 插件在 1.7.68 之前,未能正确净化(sanitize)从前端文件提交中获取的文件路径,且其单遍路径遍历过滤器可以被绕过。这使得未认证用户能够存储一个指向 uploads 目录之外的路径。当对应的文件条目随后被永久删除时,服务器上的任意文件(例如 wp-config.php)会被删除,从而导致服务中断(DoS)并可能导致站点被接管。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Unknown | Shared Files | < 1.7.67 |
affected |
| Unknown | shared-files-pro | < 1.7.68 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Unknown | Shared Files | 0 ~ 1.7.67 | - |
|
| Unknown | shared-files-pro | 0 ~ 1.7.68 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-79996 | User Registration & Membership < 5.2.6 - Authenticated Privilege Escalation via Login Sett | |
| CVE-2026-77701 | WCFM Marketplace < 3.8.2 - Unauthenticated Refund Request Creation on Guest Orders | |
| CVE-2026-19423 | Ultimate Member 2.6.7 - 2.12.1 - Unauthenticated Privilege Escalation via Role Field on Pr | |
| CVE-2026-79706 | Breeze Cache < 2.5.13 - Unauthenticated File Creation via Cache Path Traversal | |
| CVE-2026-79995 | User Registration & Membership < 5.2.5 - Subscriber+ Pending Email Change Cancellation via | |
| CVE-2026-79615 | Quiz And Survey Master < 11.2.4 - Contributor+ Cross-Quiz Question Bank and Answer Key Dis | |
| CVE-2026-19084 | Shared Files < 1.7.70 - Unauthenticated Arbitrary File Read | |
| CVE-2026-14567 | WP User Frontend < 4.3.10 - Unauthenticated User Email and Phone Disclosure via User Direc | |
| CVE-2026-14558 | WP User Frontend < 4.3.10 - Editor+ PHP Object Injection via AI Form Builder | |
| CVE-2026-12514 | Shared Files < 1.7.70 - Unauthenticated Limited File Upload |
No comments yet