WordPress 的 WP Photo Album Plus 插件存在远程代码执行(RCE)漏洞,影响所有版本,漏洞位于 函数。 漏洞成因:在通过 执行 ImageMagick 命令字符串前,对 multipart 上传的文件名缺乏充分的清洗处理。虽然使用了 对整条命令进行转义,但未对各个参数分别加引号。 仅能转义 shell 元字符,无法防止参数注入,因为空格仍作为参数分隔符存在;此外,数据库层面对文件名的清洗逻辑并未应用于用于 ImageMagick 处理的实际临时文件路径。 因此,拥有订阅者(Subscri
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| opajaap | WP Photo Album Plus | 0 ~ 9.2.09.002 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet