Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Unknown | Ultimate Member | 0 ~ 2.6.7 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Exploit for CVE-2023-3460. Unauthorized admin access for Ultimate Member plugin < v2.6.7 | https://github.com/gbrsh/CVE-2023-3460 | POC Details |
| 2 | None | https://github.com/rizqimaulanaa/CVE-2023-3460 | POC Details |
| 3 | Mass CVE-2023-3460. | https://github.com/yon3zu/Mass-CVE-2023-3460 | POC Details |
| 4 | CVE-2023-3460 | https://github.com/Fire-Null/CVE-2023-3460 | POC Details |
| 5 | Exploit and scanner for CVE-2023-3460 | https://github.com/diego-tella/CVE-2023-3460 | POC Details |
| 6 | Exploit for the vulnerability of Ultimate Member Plugin. | https://github.com/Rajneeshkarya/CVE-2023-3460 | POC Details |
| 7 | GitHub repository for CVE-2023-3460 POC | https://github.com/BlackReaperSK/CVE-2023-3460_POC | POC Details |
| 8 | CVE-2023-3460 | https://github.com/EmadYaY/CVE-2023-3460 | POC Details |
| 9 | None | https://github.com/julienbrs/exploit-CVE-2023-3460 | POC Details |
| 10 | GitHub repository for CVE-2023-3460 POC | https://github.com/DiMarcoSK/CVE-2023-3460_POC | POC Details |
| 11 | Cái này dựng lên với mục đích cho ae tham khảo, chê thì đừng có xem. :)))) | https://github.com/TranKuBao/CVE-2023-3460_FIX | POC Details |
| 12 | The plugin does not prevent visitors from creating user accounts with arbitrary capabilities, effectively allowing attackers to create administrator accounts at will. This is actively being exploited in the wild. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-3460.yaml | POC Details |
| 13 | None | https://github.com/GURJOTEXPERT/CVE-2023-3460 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2023-1273 | ND Shortcodes < 7.0 - Subscriber+ LFI | |
| CVE-2023-2321 | WPForms Google Sheet Connector < 3.4.6 - Reflected XSS | |
| CVE-2023-2320 | CF7 Google Sheets Connector < 5.0.2 - Reflected XSS | |
| CVE-2022-4623 | ND Shortcodes < 7.0 - Contributor+ Stored XSS via Shortcodes | |
| CVE-2023-3139 | Protect WP Admin < 4.0 - Unauthenticated Protection Bypass | |
| CVE-2023-2324 | Elementor Forms Google Sheet Connector < 1.0.7 - Reflected XSS | |
| CVE-2023-2010 | Forminator < 1.24.1 - Unauthenticated Race Condition on poll vote | |
| CVE-2023-3133 | Tutor LMS < 2.2.1 - Unauthenticated Access to Tutor LMS Lesson Resources via REST API | |
| CVE-2023-2333 | Ninja Forms Google Sheet Connector < 1.2.7 - Reflected XSS |
No comments yet