适用于 WordPress 的 ERP:完整 HR、会计及 CRM 套件(WooCommerce 插件)存在不受限制的文件类型上传漏洞。该漏洞影响 1.17.8 及之前所有版本,经由 函数触发。漏洞成因在于 CRM 邮件连接功能在处理传入的 IMAP 电子邮件附件时,缺少文件扩展名验证以及路径规范化措施。这使得未认证的攻击者能够向网站配置的收件邮箱发送构造好的邮件,使用与插件预期模式匹配的伪造 References 头部,并附带文件名如 的附件。从而使得基于 cron 的 IMAP 同步作业将攻击者控制的 PHP
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| wedevs | ERP: Complete HR, Accounting & CRM Suite Built for WooCommerce | ≤ 1.17.8 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| wedevs | ERP: Complete HR, Accounting & CRM Suite Built for WooCommerce | 0 ~ 1.17.8 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet