Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gc9p-mgj9-4r5j

Опубликовано: 14 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The Log WP_Mail WordPress plugin through 0.1 saves sent email in a publicly accessible directory using predictable filenames, allowing any unauthenticated visitor to obtain potentially sensitive information like generated passwords.

The Log WP_Mail WordPress plugin through 0.1 saves sent email in a publicly accessible directory using predictable filenames, allowing any unauthenticated visitor to obtain potentially sensitive information like generated passwords.

EPSS

Процентиль: 68%
0.00571
Низкий

7.5 High

CVSS3

Дефекты

CWE-200
CWE-732

Связанные уязвимости

CVSS3: 7.5
nvd
больше 3 лет назад

The Log WP_Mail WordPress plugin through 0.1 saves sent email in a publicly accessible directory using predictable filenames, allowing any unauthenticated visitor to obtain potentially sensitive information like generated passwords.

EPSS

Процентиль: 68%
0.00571
Низкий

7.5 High

CVSS3

Дефекты

CWE-200
CWE-732