漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
JetEngine <= 3.8.10.1 - Unauthenticated SQL Injection via Listing Grid Load More AJAX Endpoint
Vulnerability Description
The JetEngine plugin for WordPress is vulnerable to SQL injection in all versions up to and including 3.8.10.1. The listing_load_more AJAX handler accepts a filtered_query parameter that is intentionally excluded from the HMAC query signature check to support front-end filter integration. However, meta_query row values within filtered_query are not sanitized before being merged into SQL construction. This makes it possible for unauthenticated attackers to perform time-based or boolean blind SQL injection by appending a malicious meta_query value to a Load More AJAX request captured from any public Listing Grid page.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Vulnerability Title
Crocoblock jetengine SQL注入漏洞
Vulnerability Description
Crocoblock jetengine是美国Crocoblock公司的一个动态内容构建插件。 Crocoblock jetengine 3.8.10.1及之前版本存在SQL注入漏洞,该漏洞源于filtered_query参数中meta_query的行值未进行清理即合并到SQL构造中,可能导致未经身份验证的攻击者通过向任意公共Listing Grid页面捕获的Load More AJAX请求附加恶意meta_query值进行基于时间的或布尔盲SQL注入。
CVSS Information
N/A
Vulnerability Type
N/A