Описание
The Enjoy Social Feed plugin for WordPress website WordPress plugin through 6.2.2 does not have authorisation when resetting its database, allowing any authenticated users, such as subscriber to perform such action
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 6.2.2 (включая)
cpe:2.3:a:mediabetaprojects:enjoy_social_feed:*:*:*:*:*:wordpress:*:*
EPSS
Процентиль: 63%
0.00447
Низкий
8.8 High
CVSS3
Дефекты
CWE-862
Связанные уязвимости
CVSS3: 8.8
github
почти 2 года назад
The Enjoy Social Feed plugin for WordPress website WordPress plugin through 6.2.2 does not have authorisation when resetting its database, allowing any authenticated users, such as subscriber to perform such action
EPSS
Процентиль: 63%
0.00447
Низкий
8.8 High
CVSS3
Дефекты
CWE-862