漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Import and export users and customers <= 2.4.0 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Exposure via email_template_selected AJAX Action
Vulnerability Description
The Import and export users and customers plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.4.0 via the email_template_selected. This makes it possible for authenticated attackers, with subscriber-level access and above, to extract the post_title and raw post_content of arbitrary posts regardless of status (draft, private, future, trash, password-protected) or post type (including non-public CPTs such as WooCommerce orders and internal CRM records) by enumerating post IDs. The required codection-security nonce is exposed as inline JavaScript on any wp-admin page when ?post_type=acui_email_template is appended to the URL, which is reachable by any authenticated user including Subscribers.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
授权机制缺失
Vulnerability Title
carazo Import and export users and customers 授权问题漏洞
Vulnerability Description
carazo Import and export users and customers是carazo的数据导入导出功能。 carazo Import and export users and customers 2.4.0及之前版本存在授权问题漏洞,该漏洞源于通过email_template_selected参数导致敏感信息泄露,可能导致经过身份验证的攻击者(具有订阅者级别及以上访问权限)通过枚举帖子ID提取任意帖子的标题和原始内容。
CVSS Information
N/A
Vulnerability Type
N/A