CVE-2023-5360
Royal Elementor Addons and Templates < 1.3.79 - Unauthenticated Arbitrary File Upload
The Royal Elementor Addons and Templates WordPress plugin before 1.3.79 does not properly validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as PHP and achieve RCE.
Productos afectados
Unknown · Royal Elementor Addons and TemplatesPoCs públicas encontradas — 11
githubgithub.com/phankz/Worpress-CVE-2023-5360★ 13githubgithub.com/Chocapikk/CVE-2023-5360★ 10githubgithub.com/Pushkarup/CVE-2023-5360★ 5githubgithub.com/sagsooz/CVE-2023-5360★ 3githubgithub.com/X3RX3SSec/CVE-2023-5360★ 2githubgithub.com/nastar-id/CVE-2023-5360★ 0githubgithub.com/LaviruDilshan/CVE-2023-5360-exploit-with-native-libraries★ 0githubgithub.com/Jenderal92/WP-CVE-2023-5360★ 0exploitdbwww.exploit-db.com/exploits/52127no verificadocve_referencewpscan.com/vulnerability/281518ff-7816-4007-b712-63aed7828b34no verificadocve_referencepacketstormsecurity.com/files/175992/WordPress-Royal-Elementor-Addons-And-Templates-Remote-Shell-Upload.htmlno verificado⚠ Recursos públicos, para evaluar la exposición de sistemas que controlas o estás autorizado a probar. Prueba solo con autorización.
¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →