Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jrj5-pj64-4f42

Опубликовано: 03 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The UsersWP WordPress plugin before 1.2.12 uses predictable filenames when an admin generates an export, which could allow unauthenticated attackers to download them and retrieve sensitive information such as IP, username, and email address

The UsersWP WordPress plugin before 1.2.12 uses predictable filenames when an admin generates an export, which could allow unauthenticated attackers to download them and retrieve sensitive information such as IP, username, and email address

EPSS

Процентиль: 61%
0.00412
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
больше 1 года назад

The UsersWP WordPress plugin before 1.2.12 uses predictable filenames when an admin generates an export, which could allow unauthenticated attackers to download them and retrieve sensitive information such as IP, username, and email address

EPSS

Процентиль: 61%
0.00412
Низкий

7.5 High

CVSS3