Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-0248

Опубликовано: 12 фев. 2024
Источник: nvd
CVSS3: 4.3
EPSS Низкий

Описание

The EazyDocs WordPress plugin before 2.4.0 re-introduced CVE-2023-6029 (https://wpscan.com/vulnerability/7a0aaf85-8130-4fd7-8f09-f8edc929597e/) in 2.3.8, allowing any authenticated users, such as subscriber to delete arbitrary posts, as well as add and delete documents/sections. The issue was partially fixed in 2.3.9.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:spider-themes:eazydocs:*:*:*:*:*:wordpress:*:*
Версия до 2.4.0 (исключая)

EPSS

Процентиль: 46%
0.00231
Низкий

4.3 Medium

CVSS3

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 4.3
github
почти 2 года назад

The EazyDocs WordPress plugin before 2.4.0 re-introduced CVE-2023-6029 (https://wpscan.com/vulnerability/7a0aaf85-8130-4fd7-8f09-f8edc929597e/) in 2.3.8, allowing any authenticated users, such as subscriber to delete arbitrary posts, as well as add and delete documents/sections. The issue was partially fixed in 2.3.9.

EPSS

Процентиль: 46%
0.00231
Низкий

4.3 Medium

CVSS3

Дефекты

NVD-CWE-noinfo