Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4g2v-w6w3-cwhp

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In the Redirection for Contact Form 7 WordPress plugin before 2.3.4, any authenticated user, such as a subscriber, could use the delete_action_post AJAX action to delete any post on a target site.

In the Redirection for Contact Form 7 WordPress plugin before 2.3.4, any authenticated user, such as a subscriber, could use the delete_action_post AJAX action to delete any post on a target site.

EPSS

Процентиль: 36%
0.00155
Низкий

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 4.3
nvd
больше 4 лет назад

In the Redirection for Contact Form 7 WordPress plugin before 2.3.4, any authenticated user, such as a subscriber, could use the delete_action_post AJAX action to delete any post on a target site.

EPSS

Процентиль: 36%
0.00155
Низкий

Дефекты

CWE-863