WordPress 插件 “The Email Subscribers & Newsletters – Email Marketing, Post Notifications & Newsletter Plugin for WordPress” 存在任意短代码(shortcode)执行漏洞,影响所有 5.9.27 及以下版本。该漏洞的成因在于:软件允许用户触发某个操作,但在调用 之前未对该操作的参数值进行充分验证。因此,未认证的攻击者可以利用此漏洞执行任意短代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| icegram | Email Subscribers & Newsletters – Email Marketing, Post Notifications & Newsletter Plugin for WordPress | ≤ 5.9.27 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| icegram | Email Subscribers & Newsletters – Email Marketing, Post Notifications & Newsletter Plugin for WordPress | 0 ~ 5.9.27 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet