Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-36913

Опубликовано: 11 окт. 2022
Источник: nvd
CVSS3: 7.5
CVSS3: 7.5
EPSS Низкий

Описание

Unauthenticated Options Change and Content Injection vulnerability in Qube One Redirection for Contact Form 7 plugin <= 2.4.0 at WordPress allows attackers to change options and inject scripts into the footer HTML. Requires an additional extension (plugin) AccessiBe.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:redirection-for-contact-form7:redirection_for_contact_form_7:*:*:*:*:*:wordpress:*:*
Версия до 2.6.0 (исключая)

EPSS

Процентиль: 66%
0.00516
Низкий

7.5 High

CVSS3

7.5 High

CVSS3

Дефекты

CWE-284
CWE-74

Связанные уязвимости

CVSS3: 7.5
github
больше 3 лет назад

Unauthenticated Options Change and Content Injection vulnerability in Qube One Redirection for Contact Form 7 plugin <= 2.4.0 at WordPress allows attackers to change options and inject scripts into the footer HTML. Requires an additional extension (plugin) AccessiBe.

EPSS

Процентиль: 66%
0.00516
Низкий

7.5 High

CVSS3

7.5 High

CVSS3

Дефекты

CWE-284
CWE-74