WordPress 插件 WP Recipe Maker 存在授权绕过漏洞,受影响版本为 10.8.0 及之前所有版本。该漏洞产生的原因是插件未正确验证用户是否有权执行特定操作。 这使得拥有“贡献者(Contributor)”及以上权限的已认证攻击者能够: 1. 通过将该食谱帖子的 字段改写为攻击者的用户 ID,从而夺取任意由管理员创建的食谱的所有权; 2. 通过将其 覆盖为贡献者的草稿(draft)或待审(pending)状态,使该食谱取消发布(unpublish)。 注意:所有权的转移仅在默认设置 设为 时才会
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| brechtvds | WP Recipe Maker | 0 ~ 10.8.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet