wpDiscuz 漏洞列表
共找到 3 个与 wpDiscuz 相关的漏洞
📅 加载漏洞趋势中...
-
CVE-2020-24186: WordPress wpDiscuz <=7.0.4 - Remote Code Execution POC
WordPress wpDiscuz plugin versions version 7.0 through 7.0.4 are susceptible to remote code execution. This flaw gave unauthenticated attackers the ability to upload arbitrary files, including PHP files, and achieve remote code execution on a vulnerable site's server. -
CVE-2020-13640: wpDiscuz <= 5.3.5 - SQL Injection POC
A SQL injection issue in the gVectors wpDiscuz plugin 5.3.5 and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the order parameter of a wpdLoadMoreComments request. -
CVE-2020-24186: WordPress wpDiscuz <=7.0.4 - Remote Code Execution POC
WordPress wpDiscuz plugin versions version 7.0 through 7.0.4 are susceptible to remote code execution. This flaw gave unauthenticated attackers the ability to upload arbitrary files, including PHP files, and achieve remote code execution on a vulnerable site's server.