Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-54qf-27xf-pgjq

Опубликовано: 18 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

The Accept Authorize.NET Payments Using Contact Form 7 plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.2 via the cf7adn-info.php file. This makes it possible for unauthenticated attackers to extract configuration data which can be used to aid in other attacks.

The Accept Authorize.NET Payments Using Contact Form 7 plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.2 via the cf7adn-info.php file. This makes it possible for unauthenticated attackers to extract configuration data which can be used to aid in other attacks.

EPSS

Процентиль: 53%
0.00301
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.3
nvd
около 1 года назад

The Accept Authorize.NET Payments Using Contact Form 7 plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.2 via the cf7adn-info.php file. This makes it possible for unauthenticated attackers to extract configuration data which can be used to aid in other attacks.

EPSS

Процентиль: 53%
0.00301
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-200