在 WHMCS 的 2Checkout 支付网关中存在缺失授权(Missing Authorization)漏洞: 受影响版本: - WHMCS 8.13.0 至 8.13.8 之前; - WHMCS 9.0.0 至 9.0.8 之前; - 其他已停止支持(EOL)的 4.5.0 及更早版本。 漏洞影响: 在特定条件下,未认证用户可以通过访问 2Checkout 支付网关的接口端点,获取 WHMCS 客户的数据,从而造成数据泄露。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-67402 | 9.2 CRITICAL | CSF 16.31前Messenger未授权RCE |
| CVE-2026-67397 | 8.5 HIGH | Plesk 18.0.80.5 及以下版本路径遍历提权漏洞 |
No comments yet