Описание
The ContentStudio plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 1.2.5. This could allow unauthenticated attackers to obtain a nonce needed for the creation of posts.
Ссылки
- ExploitIssue TrackingThird Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
- ExploitIssue TrackingThird Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.2.6 (исключая)
cpe:2.3:a:contentstudio:contentstudio:*:*:*:*:*:wordpress:*:*
EPSS
Процентиль: 79%
0.0128
Низкий
7.5 High
CVSS3
5.3 Medium
CVSS3
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 5.3
github
около 3 лет назад
The ContentStudio plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 1.2.5. This could allow unauthenticated attackers to obtain a nonce needed for the creation of posts.
EPSS
Процентиль: 79%
0.0128
Низкий
7.5 High
CVSS3
5.3 Medium
CVSS3
Дефекты
NVD-CWE-noinfo