CVE-2023-5360
Royal Elementor Addons and Templates < 1.3.79 - Unauthenticated Arbitrary File Upload
The Royal Elementor Addons and Templates WordPress plugin before 1.3.79 does not properly validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as PHP and achieve RCE.
Produtos afetados
Unknown · Royal Elementor Addons and TemplatesPoCs públicas encontradas — 11
githubgithub.com/phankz/Worpress-CVE-2023-5360★ 13githubgithub.com/Chocapikk/CVE-2023-5360★ 10githubgithub.com/Pushkarup/CVE-2023-5360★ 5githubgithub.com/sagsooz/CVE-2023-5360★ 3githubgithub.com/X3RX3SSec/CVE-2023-5360★ 2githubgithub.com/nastar-id/CVE-2023-5360★ 0githubgithub.com/LaviruDilshan/CVE-2023-5360-exploit-with-native-libraries★ 0githubgithub.com/Jenderal92/WP-CVE-2023-5360★ 0exploitdbwww.exploit-db.com/exploits/52127não verificadocve_referencewpscan.com/vulnerability/281518ff-7816-4007-b712-63aed7828b34não verificadocve_referencepacketstormsecurity.com/files/175992/WordPress-Royal-Elementor-Addons-And-Templates-Remote-Shell-Upload.htmlnão verificado⚠ Recursos públicos, para você avaliar a exposição de sistemas que controla ou está autorizado a testar. Teste apenas com autorização.
Quer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →