Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x7rm-w2h5-52qj

Опубликовано: 12 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

An unprivileged user could use the functionality of the NS WooCommerce Watermark WordPress plugin through 2.11.3 to load images that hide malware for example from passing malicious domains to hide their trace, by making them pass through the vulnerable domain.

An unprivileged user could use the functionality of the NS WooCommerce Watermark WordPress plugin through 2.11.3 to load images that hide malware for example from passing malicious domains to hide their trace, by making them pass through the vulnerable domain.

EPSS

Процентиль: 51%
0.00284
Низкий

7.5 High

CVSS3

Дефекты

CWE-80

Связанные уязвимости

CVSS3: 7.5
nvd
почти 4 года назад

An unprivileged user could use the functionality of the NS WooCommerce Watermark WordPress plugin through 2.11.3 to load images that hide malware for example from passing malicious domains to hide their trace, by making them pass through the vulnerable domain.

EPSS

Процентиль: 51%
0.00284
Низкий

7.5 High

CVSS3

Дефекты

CWE-80