Описание
The WordPress Toolbar WordPress plugin through 2.2.6 redirects to any URL via the "wptbto" parameter. This makes it possible for unauthenticated attackers to redirect users to potentially malicious sites if they can successfully trick them into performing an action.
Ссылки
- Exploit
- ExploitThird Party Advisory
- Exploit
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.2.6 (включая)
cpe:2.3:a:abhinavsingh:wordpress_toolbar:*:*:*:*:*:*:wordpress:*
EPSS
Процентиль: 98%
0.52517
Средний
6.1 Medium
CVSS3
Дефекты
CWE-601
Связанные уязвимости
CVSS3: 6.1
github
около 2 лет назад
The WordPress Toolbar WordPress plugin through 2.2.6 redirects to any URL via the "wptbto" parameter. This makes it possible for unauthenticated attackers to redirect users to potentially malicious sites if they can successfully trick them into performing an action.
EPSS
Процентиль: 98%
0.52517
Средний
6.1 Medium
CVSS3
Дефекты
CWE-601