Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-36723

Опубликовано: 07 июн. 2023
Источник: nvd
CVSS3: 5.3
EPSS Средний

Описание

The ListingPro - WordPress Directory & Listing Theme for WordPress is vulnerable to Sensitive Data Exposure in versions before 2.6.1 via the ~/listingpro-plugin/functions.php file. This makes it possible for unauthenticated attackers to extract sensitive data including usernames, full names, email addresses, phone numbers, physical addresses and user post counts.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:cridio:listingpro:*:*:*:*:*:wordpress:*:*
Версия до 2.6.1 (исключая)

EPSS

Процентиль: 94%
0.14607
Средний

5.3 Medium

CVSS3

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 5.3
github
больше 2 лет назад

The ListingPro - WordPress Directory & Listing Theme for WordPress is vulnerable to Sensitive Data Exposure in versions before 2.6.1 via the ~/listingpro-plugin/functions.php file. This makes it possible for unauthenticated attackers to extract sensitive data including usernames, full names, email addresses, phone numbers, physical addresses and user post counts.

EPSS

Процентиль: 94%
0.14607
Средний

5.3 Medium

CVSS3

Дефекты

NVD-CWE-noinfo