Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qr88-xqw7-jxp9

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8

Описание

WP_Admin_UI in the Crony Cronjob Manager plugin before 0.4.7 for WordPress has CSRF via the name parameter in an action=manage&do=create operation, as demonstrated by inserting XSS sequences.

WP_Admin_UI in the Crony Cronjob Manager plugin before 0.4.7 for WordPress has CSRF via the name parameter in an action=manage&do=create operation, as demonstrated by inserting XSS sequences.

EPSS

Процентиль: 30%
0.00111
Низкий

8 High

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 8
nvd
больше 8 лет назад

WP_Admin_UI in the Crony Cronjob Manager plugin before 0.4.7 for WordPress has CSRF via the name parameter in an action=manage&do=create operation, as demonstrated by inserting XSS sequences.

EPSS

Процентиль: 30%
0.00111
Низкий

8 High

CVSS3

Дефекты

CWE-352