Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-6389

Опубликовано: 29 янв. 2024
Источник: nvd
CVSS3: 6.1
EPSS Средний

Описание

The WordPress Toolbar WordPress plugin through 2.2.6 redirects to any URL via the "wptbto" parameter. This makes it possible for unauthenticated attackers to redirect users to potentially malicious sites if they can successfully trick them into performing an action.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:abhinavsingh:wordpress_toolbar:*:*:*:*:*:*:wordpress:*
Версия до 2.2.6 (включая)

EPSS

Процентиль: 98%
0.52517
Средний

6.1 Medium

CVSS3

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 6.1
github
около 2 лет назад

The WordPress Toolbar WordPress plugin through 2.2.6 redirects to any URL via the "wptbto" parameter. This makes it possible for unauthenticated attackers to redirect users to potentially malicious sites if they can successfully trick them into performing an action.

EPSS

Процентиль: 98%
0.52517
Средний

6.1 Medium

CVSS3

Дефекты

CWE-601