WordPress 的 YS LeadGen 插件在所有版本(包括 2.1.4 及更早版本)中,由于弹窗管理操作缺少权限检查,存在授权绕过和存储型跨站脚本(Stored XSS)漏洞。多个 AJAX 端点未对弹窗管理操作进行能力验证,使得拥有订阅者(Subscriber)及以上权限的认证攻击者可以创建任意弹窗并注入恶意 JavaScript 代码,当弹窗显示时执行,从而导致存储型 XSS 漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ysinnovations | YS LeadGen – Popup Builder, Popup Maker & Form Builder for WordPress | Lead Generation, Email Marketing, Sales, Conversions, Opt-Ins & Subscribers | 0 ~ 2.1.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet