高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
| # | POC説明 | ソースリンク | Shenlongリンク |
|---|---|---|---|
| 1 | The Hostel WordPress plugin before 1.1.5.3 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-3753.yaml | POC詳細 |
公開POCは見つかりませんでした。
ログインしてAI POCを生成| CVE-2024-4269 | SVG Block < 1.1.20 - Author+ Stored XSS via SVG File Upload | |
| CVE-2024-4602 | Embed Peertube Playlist < 1.10 - Editor+ Stored XSS | |
| CVE-2024-4217 | Shortcodes Ultimate Pro < 7.1.5 - Contributor+ Stored Cross-Site Scripting XSS | |
| CVE-2024-3964 | Product Enquiry for WooCommerce < 3.1.8 - Admin+ Stored XSS | |
| CVE-2024-3963 | RafflePress Lite < 1.12.14 - Editor+ Stored XSS | |
| CVE-2024-3026 | WordPress Button Plugin MaxButtons < 9.7.8 - Editor+ Stored XSS | |
| CVE-2024-3710 | Image Photo Gallery Final Tiles Grid < 3.6.0 - Contributor+ Stored XSS | |
| CVE-2024-3632 | Smart Image Gallery < 1.0.19 - Update/Delete Google API Key via CSRF | |
| CVE-2024-2870 | Swift Framework < 2024.04.30 - Reflected XSS | |
| CVE-2024-3751 | Seriously Simple Podcasting < 3.3.0 - Admin+ Stored XSS | |
| CVE-2024-4272 | Support SVG < 1.1.0 - Stored XSS via SVG Upload | |
| CVE-2024-4977 | Index WP MySQL For Speed < 1.4.18 - Admin+ Reflected XSS | |
| CVE-2024-4752 | EventON < 2.2.15 - Admin+ Stored Cross-Site Scripting via event subtitle | |
| CVE-2024-5028 | CM WordPress Search And Replace Plugin < 1.3.9 - Plugin Reset via CSRF | |
| CVE-2024-5002 | User Submitted Posts < 20240516 - Admin+ Stored XSS | |
| CVE-2024-5034 | SULly < 4.3.1 - Plugin Reset via CSRF | |
| CVE-2024-5033 | SULly < 4.3.1 - Admin+ Stored XSS via CSRF | |
| CVE-2024-5032 | SULly < 4.3.1 - Reflected XSS | |
| CVE-2024-5076 | WP eMember < 10.6.6 - Bulk Delete via CSRF | |
| CVE-2024-5075 | WP eMember < 10.6.6 - Reflected XSS |
Showing 20 of 45 CVEs. View all on vendor page →
まだコメントはありません