WordPress诸多插件爆出高危漏洞

2011.09.02

1.WordPress SH Slideshow plugin <= 3.1.4 SQL Injection Vulnerability

Exploit Title: WordPress SH Slideshow plugin <= 3.1.4 SQL Injection Vul......

WordPress诸多插件爆出高危漏洞

2011.09.02

1.WordPress SH Slideshow plugin <= 3.1.4 SQL Injection Vulnerability

Exploit Title: WordPress SH Slideshow plugin <= 3.1.4 SQL Injection Vul......

Discuz 1.5 配合NGINX二次解析爆路径BUG

2011.09.02

作者:晴天小铸

测试环境:discuz X1.5+nginx 1.0

漏洞文件source/function/function_core.php,代码:

$_G['setting']['domain']['app'][......