WordPress 的 Download Manager 插件在所有 3.3.70 及更早版本中存在存储型跨站脚本漏洞(Stored Cross-Site Scripting),原因是缺乏充分的输入净化和输出转义。这使得具有订阅者(Subscriber)及以上权限的认证攻击者能够在页面上注入任意网页脚本,这些脚本将在用户访问被注入的页面时执行。 该漏洞要求在前端页面中使用了 短代码,并且该页面需对订阅者级别用户可见。攻击者可通过“显示名称”字段提交经过多重实体编码的有效载荷,从而绕过输入净化机制,实现恶意脚本的持久
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| codename065 | Download Manager | ≤ 3.3.70 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| codename065 | Download Manager | 0 ~ 3.3.70 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet