Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mjqr-j4x8-38w5

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The DiveBook plugin 1.1.4 for WordPress is prone to improper access control in the Log Dive form because it fails to perform authorization checks. An attacker may leverage this issue to manipulate the integrity of dive logs.

The DiveBook plugin 1.1.4 for WordPress is prone to improper access control in the Log Dive form because it fails to perform authorization checks. An attacker may leverage this issue to manipulate the integrity of dive logs.

EPSS

Процентиль: 44%
0.00214
Низкий

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 5.3
nvd
около 5 лет назад

The DiveBook plugin 1.1.4 for WordPress is prone to improper access control in the Log Dive form because it fails to perform authorization checks. An attacker may leverage this issue to manipulate the integrity of dive logs.

EPSS

Процентиль: 44%
0.00214
Низкий

Дефекты

CWE-862