WordPress 的 ACPT (Premium) 插件在包括 2.0.66 在内的所有版本中均存在权限提升漏洞。该漏洞源于 函数中缺少授权检查,使得未认证的用户提交表单时,可以在调用 之前控制目标用户 ID。这使得未认证的 attackers(攻击者)能够覆盖任意 WordPress 用户的电子邮件地址和密码(包括管理员账户),从而接管该账户。成功利用此漏洞需要存在一个允许匿名提交的公开 ACPT 用户表单。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Mauro Cassani | ACPT (Premium) | ≤ 2.0.66 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Mauro Cassani | ACPT (Premium) | 0 ~ 2.0.66 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet