Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r77g-4w8g-2vqq

Опубликовано: 15 мая 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The WP ERP | Complete HR solution with recruitment & job listings | WooCommerce CRM & Accounting WordPress plugin before 1.13.4 has an issue where employees can manipulate parameters to access the data of terminated employees.

The WP ERP | Complete HR solution with recruitment & job listings | WooCommerce CRM & Accounting WordPress plugin before 1.13.4 has an issue where employees can manipulate parameters to access the data of terminated employees.

EPSS

Процентиль: 27%
0.00097
Низкий

7.5 High

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 7.5
nvd
9 месяцев назад

The WP ERP | Complete HR solution with recruitment & job listings | WooCommerce CRM & Accounting WordPress plugin before 1.13.4 is affected by an IDOR issue where employees can manipulate parameters to access the data of terminated employees.

EPSS

Процентиль: 27%
0.00097
Низкий

7.5 High

CVSS3

Дефекты

CWE-862