尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| Unknown | Duplicator – WordPress Migration Plugin | 1.4.7 ~ 1.4.7 | - |
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | WordPress Duplicator plugin before 1.4.7 is susceptible to authentication bypass. The plugin discloses the URL of the backup to unauthenticated visitors accessing the main installer endpoint. If the installer script has been run once by an administrator, this allows download of the full site backup without proper authentication. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2022/CVE-2022-2551.yaml | POC详情 |
未找到公开 POC。
登录以生成 AI POC| CVE-2022-2532 | WordPress plugin Feed Them Social 跨站脚本漏洞 | |
| CVE-2022-2375 | WordPress plugin WP Sticky Button 跨站脚本漏洞 | |
| CVE-2022-2377 | WordPress plugin Directorist 安全漏洞 | |
| CVE-2022-2382 | WordPress plugin Product Slider for WooCommerce 安全漏洞 | |
| CVE-2022-2383 | WordPress plugin Feed Them Social 跨站脚本漏洞 | |
| CVE-2022-2388 | WordPress plugin WP Coder 跨站请求伪造漏洞 | |
| CVE-2022-2389 | WordPress plugin Automations 安全漏洞 | |
| CVE-2022-2392 | WordPress plugin Lana Downloads Manager 安全漏洞 | |
| CVE-2022-2407 | WordPress Plugin WP phpMyAdmin 跨站脚本漏洞 | |
| CVE-2022-2362 | WordPress plugin Download Manager 跨站脚本漏洞 | |
| CVE-2022-2544 | WordPress plugin Ninja Job Board 安全漏洞 | |
| CVE-2022-2552 | WordPress plugin Duplicator 授权问题漏洞 | |
| CVE-2022-2555 | WordPress plugin Yotpo Reviews for WooCommerce 跨站请求伪造漏洞 | |
| CVE-2022-2557 | WordPress plugin Team 路径遍历漏洞 | |
| CVE-2022-2558 | WordPress plugin Simple Job Board 信息泄露漏洞 | |
| CVE-2022-2593 | WordPress plugin Better Search Replace SQL注入漏洞 | |
| CVE-2022-2600 | WordPress plugin Auto-hyperlink URLs 安全漏洞 | |
| CVE-2021-24910 | WordPress plugin Transposh WordPress Translation 跨站脚本漏洞 | |
| CVE-2022-2361 | WordPress plugin WP Social Chat 跨站脚本漏洞 | |
| CVE-2022-2312 | WordPress plugin Student Result or Employee Database 跨站请求伪造漏洞 |
显示前 20 条,共 34 条。 查看全部 → →
暂无评论