WordPress 的 MW WP Form 插件(所有 5.1.7 及更早版本)存在存储型跨站脚本(Stored XSS)漏洞,原因是 'post_id' 参数缺乏足够的输入清理和输出转义。这使得未认证的攻击者可以在页面上注入任意 Web 脚本,当用户访问被注入的页面时,脚本就会执行。 保护表单提交的 CSRF 验证机制(MW_WP_Form_Csrf)可以被任何未认证的访问者绕过:只需先加载公开表单页面以获取有效的“双提交”cookie,即可绕过验证,从而无法有效阻止恶意载荷被存储。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| websoudan | MW WP Form | ≤ 5.1.7 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| websoudan | MW WP Form | 0 ~ 5.1.7 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet