Описание
Broken Access Control vulnerability in Dean Oakley's Photospace Gallery plugin <= 2.3.5 at WordPress allows users with subscriber or higher role to change plugin settings.
Ссылки
- Third Party Advisory
- ProductThird Party Advisory
- Third Party Advisory
- ProductThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.3.5 (включая)
cpe:2.3:a:photospace_gallery_project:photospace_gallery:*:*:*:*:*:wordpress:*:*
EPSS
Процентиль: 39%
0.00178
Низкий
5.4 Medium
CVSS3
4.3 Medium
CVSS3
Дефекты
CWE-264
NVD-CWE-Other
Связанные уязвимости
CVSS3: 6.5
github
больше 3 лет назад
Broken Access Control vulnerability in Dean Oakley's Photospace Gallery plugin <= 2.3.5 at WordPress allows users with subscriber or higher role to change plugin settings.
EPSS
Процентиль: 39%
0.00178
Низкий
5.4 Medium
CVSS3
4.3 Medium
CVSS3
Дефекты
CWE-264
NVD-CWE-Other