高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
| ベンダー | プロダクト | 影響を受けるバージョン | CPE | 購読 |
|---|---|---|---|---|
| Unknown | WP Dream Carousel | 0 ~ 1.0.1b | - |
| # | POC説明 | ソースリンク | Shenlongリンク |
|---|---|---|---|
| 1 | WP Dream Carousel WordPress plugin < 1.0.1b contains a reflected cross-site scripting caused by lack of sanitization and escaping of a parameter before outputting it in the page, letting attackers execute arbitrary scripts in the context of high privilege users, exploit requires victim to load a maliciously crafted URL. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-13331.yaml | POC詳細 |
公開POCは見つかりませんでした。
ログインしてAI POCを生成| CVE-2025-0466 | Sensei LMS < 4.24.4 - Unauthenticated sensei_email/sensei_message Disclosure | |
| CVE-2025-0368 | Banner Garden Plugin for WordPress <= 0.1.3 - Reflected XSS | |
| CVE-2024-13332 | TransFinanz <= 1.0.0 - Reflected XSS | |
| CVE-2024-13330 | Justrows Free <= 0.2 - Reflected XSS | |
| CVE-2024-13329 | Solidres <= 0.9.4 - Reflected XSS | |
| CVE-2024-13327 | Musicbox <= 2.0.3 - Reflected XSS | |
| CVE-2024-13328 | Giga Messenger Bots <= 2.3.1 - Reflected XSS | |
| CVE-2024-13326 | iBuildApp <= 0.2.0 - Reflected XSS | |
| CVE-2024-13325 | Glossy <= 2.3.5 - Reflected XSS | |
| CVE-2024-13115 | WP Projects Portfolio with Client Testimonials <= 3.0 - Stored XSS via CSRF | |
| CVE-2024-13114 | WP Projects Portfolio with Client Testimonials <= 3.0 - Reflected XSS |
まだコメントはありません