WordPress 的 Paid Downloads 插件在 3.15 及更早的所有版本中均存在任意文件上传漏洞,漏洞位于 函数中。该漏洞是由于 函数缺少身份验证和文件类型校验所致,且该函数在未认证的情况下可通过 对 返回 true 而被访问。这使得未认证的远程攻击者能够上传可执行文件,从而可能导致远程代码执行(RCE)。 在启用了 的 Apache 服务器上,若将 文件放置在上传目录中,可能会阻止对上传文件的直接 HTTP 访问,从而限制漏洞的利用范围。因此,该漏洞主要影响不遵守 指令的环境,例如 nginx、L
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ichurakov | Paid Downloads | 0 ~ 3.15 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet