Elementor 的主插件(Master Addons for Elementor – Elementor Addons, Widgets, Mega Menu Builder, Popup Builder, Widget Builder & Template Kits)的 WordPress 插件在 3.1.9 及更早的所有版本中,通过 函数存在任意文件上传漏洞。该漏洞的原因是 AJAX 处理器的授权机制不正确:它仅要求 权限,而与其对应的其他同级处理器均要求 权限;同时,在 ZIP 文件解压后,缺少针对每个文
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| pixarlabs | Master Addons for Elementor – Elementor Addons, Widgets, Mega Menu Builder, Popup Builder, Widget Builder & Template Kits | 0 ~ 3.1.9 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet