WordPress 的 “miniOrange JWT Authentication for WP REST APIs” 插件在 4.8.0 版本之前存在一个“认证方式降级”漏洞。该漏洞允许未认证的 attackers(攻击者)通过提供一个特定的 GET 请求参数,绕过管理员配置的认证机制,且该参数不需要任何权限(capability)检查或 nonce 验证。 攻击者可以强制插件使用 Basic HTTP 认证方式,无视已配置的 JWT 或 API token 设置。随后,攻击者可利用可区分的错误代码以及缺乏频率
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| miniOrange | JWT Authentication for WP REST APIs | 0 ~ 4.8.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet