Wordpress Buddypress插件'name'字段HTML注入漏洞

Basic Fields

SSV ID:
SSV-61466
Find Time:
Unknown
Submit Time:
2014-02-18
Level:
Category:
Cookie 验证错误
Component:
WordPress
(1.9.1)
Author:
Unknown
Submitter:
Knownsec
CVE-ID:
Add
CNNVD-ID:
Add
CNVD-ID:
Add
ZoomEye Dork:
Add

Source

Detail

Contributor Knownsec Got  0.95KB
Loading icon
heishao alert StrayCat have 4  exchange

PoC (非 pocsuite 插件)

Contributor Knownsec totally have   0.85KB

alert StrayCat have 7 Exchange

Reference Linking

Solutions

Temp Solutions

Official Solution

Defense Solutions

Popularity 1616
Need to bind phone before comment. Bind Now

Unavailable Comments

※Any content provided by this site, only to learn the code and services, not for illegal purposes