Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pf4x-fwwq-h7vv

Опубликовано: 04 янв. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The Stars Rating WordPress plugin before 3.5.1 does not validate the submitted rating, allowing submission of long integer, causing a Denial of Service in the comments section, or pending comment dashboard depending if the user sent it as unauthenticated or authenticated.

The Stars Rating WordPress plugin before 3.5.1 does not validate the submitted rating, allowing submission of long integer, causing a Denial of Service in the comments section, or pending comment dashboard depending if the user sent it as unauthenticated or authenticated.

EPSS

Процентиль: 70%
0.00634
Низкий

7.5 High

CVSS3

Дефекты

CWE-191
CWE-20
CWE-400

Связанные уязвимости

CVSS3: 7.5
nvd
около 4 лет назад

The Stars Rating WordPress plugin before 3.5.1 does not validate the submitted rating, allowing submission of long integer, causing a Denial of Service in the comments section, or pending comment dashboard depending if the user sent it as unauthenticated or authenticated.

EPSS

Процентиль: 70%
0.00634
Низкий

7.5 High

CVSS3

Дефекты

CWE-191
CWE-20
CWE-400