Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2pvr-5mpx-gwv9

Опубликовано: 04 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

The Social Link Pages: link-in-bio landing pages for your social media profiles plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the import_link_pages() function in all versions up to, and including, 1.6.9. This makes it possible for unauthenticated attackers to inject arbitrary pages and malicious web scripts.

The Social Link Pages: link-in-bio landing pages for your social media profiles plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the import_link_pages() function in all versions up to, and including, 1.6.9. This makes it possible for unauthenticated attackers to inject arbitrary pages and malicious web scripts.

EPSS

Процентиль: 72%
0.00737
Низкий

7.2 High

CVSS3

Связанные уязвимости

CVSS3: 7.2
nvd
больше 1 года назад

The Social Link Pages: link-in-bio landing pages for your social media profiles plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the import_link_pages() function in all versions up to, and including, 1.6.9. This makes it possible for unauthenticated attackers to inject arbitrary pages and malicious web scripts.

EPSS

Процентиль: 72%
0.00737
Низкий

7.2 High

CVSS3