在 ECS WordPress 插件 4.3.8 版本之前,其动态重复器操作缺乏权限或所有权验证,仅依赖于一个对任何能够打开页面构建器的用户都可用的 nonce(一次性令牌)。这使得贡献者及以上级别的用户可以通过该漏洞读取、修改和删除其不拥有的文章的绑定配置,并更改 ECS WordPress 插件 4.3.8 版本之前的站点级预设配置。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-14230 | ECS < 4.3.8 - Contributor+ Stored XSS via Dynamic Repeater Bindings | |
| CVE-2026-14229 | ECS < 4.3.8 - Unauthenticated Private Content Disclosure via ecsload | |
| CVE-2026-16541 | Simply Schedule Appointments < 1.6.12.17 - Team Member+ User Email Disclosure via Users an | |
| CVE-2026-16611 | Product Feed PRO for WooCommerce < 13.5.7 - Unauthenticated Feed Configuration Disclosure | |
| CVE-2026-18216 | Backup Migration < 2.1.7 - Admin+ Privilege Escalation via Post-Restore Auto-Login |
No comments yet