Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f99f-842c-6wrr

Опубликовано: 17 апр. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

The W4 Post List WordPress plugin before 2.4.6 does not ensure that password protected posts can be accessed before displaying their content, which could allow any authenticated users to access them

The W4 Post List WordPress plugin before 2.4.6 does not ensure that password protected posts can be accessed before displaying their content, which could allow any authenticated users to access them

EPSS

Процентиль: 51%
0.00278
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-200
CWE-862

Связанные уязвимости

CVSS3: 6.5
nvd
почти 3 года назад

The W4 Post List WordPress plugin before 2.4.6 does not ensure that password protected posts can be accessed before displaying their content, which could allow any authenticated users to access them

EPSS

Процентиль: 51%
0.00278
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-200
CWE-862