Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-6695

Опубликовано: 31 июл. 2024
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

it's possible for an attacker to gain administrative access without having any kind of account on the targeted site and perform unauthorized actions. This is due to improper logic flow on the user registration process.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:cozmoslabs:profile_builder:*:*:*:*:*:wordpress:*:*
Версия до 3.11.9 (исключая)

EPSS

Процентиль: 77%
0.01084
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 9.8
github
больше 1 года назад

it's possible for an attacker to gain administrative access without having any kind of account on the targeted site and perform unauthorized actions. This is due to improper logic flow on the user registration process.

EPSS

Процентиль: 77%
0.01084
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-863