Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jpx5-rg85-r3xv

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

The import_data function of the Simple 301 Redirects by BetterLinks WordPress plugin before 2.0.4 had no capability or nonce checks making it possible for unauthenticated users to import a set of site redirects.

The import_data function of the Simple 301 Redirects by BetterLinks WordPress plugin before 2.0.4 had no capability or nonce checks making it possible for unauthenticated users to import a set of site redirects.

EPSS

Процентиль: 75%
0.00898
Низкий

8.8 High

CVSS3

Дефекты

CWE-284
CWE-862

Связанные уязвимости

CVSS3: 8.8
nvd
больше 4 лет назад

The import_data function of the Simple 301 Redirects by BetterLinks WordPress plugin before 2.0.4 had no capability or nonce checks making it possible for unauthenticated users to import a set of site redirects.

EPSS

Процентиль: 75%
0.00898
Низкий

8.8 High

CVSS3

Дефекты

CWE-284
CWE-862