WordPress 的 Hostel 插件在 1.1.8 及更早的所有版本中,由于对输入缺乏充分的净化(sanitization)以及对输出缺乏适当的转义(escaping),存在通过 'custom_currency' 参数和 'locale_url' 设置触发存储型跨站脚本攻击(Stored XSS)的漏洞。 这使得拥有管理员权限的已认证攻击者能够在页面中注入任意 Web 脚本,当其他用户访问被注入的页面时,这些脚本将会被执行。 该漏洞仅影响多站点(multi-site)安装环境,以及禁用了 unfiltere
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet