Логотип exploitDog
bind:CVE-2020-10568
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-10568

Количество 2

Количество 2

nvd логотип

CVE-2020-10568

почти 6 лет назад

The sitepress-multilingual-cms (WPML) plugin before 4.3.7-b.2 for WordPress has CSRF due to a loose comparison. This leads to remote code execution in includes/class-wp-installer.php via a series of requests that leverage unintended comparisons of integers to strings.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-q75g-rrjh-783v

больше 3 лет назад

The sitepress-multilingual-cms (WPML) plugin before 4.3.7-b.2 for WordPress has CSRF due to a loose comparison. This leads to remote code execution in includes/class-wp-installer.php via a series of requests that leverage unintended comparisons of integers to strings.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-10568

The sitepress-multilingual-cms (WPML) plugin before 4.3.7-b.2 for WordPress has CSRF due to a loose comparison. This leads to remote code execution in includes/class-wp-installer.php via a series of requests that leverage unintended comparisons of integers to strings.

CVSS3: 8.8
2%
Низкий
почти 6 лет назад
github логотип
GHSA-q75g-rrjh-783v

The sitepress-multilingual-cms (WPML) plugin before 4.3.7-b.2 for WordPress has CSRF due to a loose comparison. This leads to remote code execution in includes/class-wp-installer.php via a series of requests that leverage unintended comparisons of integers to strings.

2%
Низкий
больше 3 лет назад

Уязвимостей на страницу