Описание
An unprivileged user could use the functionality of the NS WooCommerce Watermark WordPress plugin through 2.11.3 to load images that hide malware for example from passing malicious domains to hide their trace, by making them pass through the vulnerable domain.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.11.3 (включая)
cpe:2.3:a:nsthemes:ns_watermark_for_woocommerce:*:*:*:*:*:wordpress:*:*
EPSS
Процентиль: 51%
0.00284
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-80
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 7.5
github
почти 4 года назад
An unprivileged user could use the functionality of the NS WooCommerce Watermark WordPress plugin through 2.11.3 to load images that hide malware for example from passing malicious domains to hide their trace, by making them pass through the vulnerable domain.
EPSS
Процентиль: 51%
0.00284
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-80
NVD-CWE-noinfo