Exploitation Summary
EIP tracks 1 public exploit for CVE-2024-0881. PoCs published by halilkirazkaya. A Nuclei detection template is also available.
AI-analyzed exploit summary This repository contains functional exploit code for multiple CVEs, including CVE-2015-9415 (WordPress Remote File Inclusion), CVE-2019-7195 (QNAP Photo Station Path Traversal), and others. Each PoC includes HTTP requests or commands to exploit the vulnerabilities.
Description
The Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carousel WordPress plugin before 2.2.76 does not have proper authorization, resulting in password protected posts to be displayed in the result of some unauthenticated AJAX actions, allowing unauthenticated users to read such posts
Exploits (1)
This repository contains functional exploit code for multiple CVEs, including CVE-2015-9415 (WordPress Remote File Inclusion), CVE-2019-7195 (QNAP Photo Station Path Traversal), and others. Each PoC includes HTTP requests or commands to exploit the vulnerabilities.
Nuclei Templates (1)
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N