Логотип exploitDog
bind:CVE-2015-10139
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-10139

Количество 2

Количество 2

nvd логотип

CVE-2015-10139

7 месяцев назад

The WPLMS theme for WordPress is vulnerable to Privilege Escalation in versions 1.5.2 to 1.8.4.1 via the 'wp_ajax_import_data' AJAX action. This makes it possible for authenticated attackers to change otherwise restricted settings and potentially create a new accessible admin account.

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-frrx-jc6h-v2mw

7 месяцев назад

The WPLMS theme for WordPress is vulnerable to Privilege Escalation in versions 1.5.2 to 1.8.4.1 via the 'wp_ajax_import_data' AJAX action. This makes it possible for authenticated attackers to change otherwise restricted settings and potentially create a new accessible admin account.

CVSS3: 8.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2015-10139

The WPLMS theme for WordPress is vulnerable to Privilege Escalation in versions 1.5.2 to 1.8.4.1 via the 'wp_ajax_import_data' AJAX action. This makes it possible for authenticated attackers to change otherwise restricted settings and potentially create a new accessible admin account.

CVSS3: 8.8
44%
Средний
7 месяцев назад
github логотип
GHSA-frrx-jc6h-v2mw

The WPLMS theme for WordPress is vulnerable to Privilege Escalation in versions 1.5.2 to 1.8.4.1 via the 'wp_ajax_import_data' AJAX action. This makes it possible for authenticated attackers to change otherwise restricted settings and potentially create a new accessible admin account.

CVSS3: 8.8
44%
Средний
7 месяцев назад

Уязвимостей на страницу