Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rf99-rhf6-h4fp

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The WordPress plugin, Email Subscribers & Newsletters, before 4.2.3 had a flaw that allowed for unauthenticated option creation. In order to exploit this vulnerability, an attacker would need to send a /wp-admin/admin-post.php?es_skip=1&option_name= request.

The WordPress plugin, Email Subscribers & Newsletters, before 4.2.3 had a flaw that allowed for unauthenticated option creation. In order to exploit this vulnerability, an attacker would need to send a /wp-admin/admin-post.php?es_skip=1&option_name= request.

EPSS

Процентиль: 59%
0.00388
Низкий

Связанные уязвимости

CVSS3: 5.3
nvd
около 6 лет назад

The WordPress plugin, Email Subscribers & Newsletters, before 4.2.3 had a flaw that allowed for unauthenticated option creation. In order to exploit this vulnerability, an attacker would need to send a /wp-admin/admin-post.php?es_skip=1&option_name= request.

EPSS

Процентиль: 59%
0.00388
Низкий