Логотип exploitDog
bind:CVE-2020-8771
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-8771

Количество 2

Количество 2

nvd логотип

CVE-2020-8771

около 6 лет назад

The Time Capsule plugin before 1.21.16 for WordPress has an authentication bypass. Any request containing IWP_JSON_PREFIX causes the client to be logged in as the first account on the list of administrator accounts.

CVSS3: 9.8
EPSS: Высокий
github логотип

GHSA-jr49-4p9w-qv93

больше 3 лет назад

The Time Capsule plugin before 1.21.16 for WordPress has an authentication bypass. Any request containing IWP_JSON_PREFIX causes the client to be logged in as the first account on the list of administrator accounts.

EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-8771

The Time Capsule plugin before 1.21.16 for WordPress has an authentication bypass. Any request containing IWP_JSON_PREFIX causes the client to be logged in as the first account on the list of administrator accounts.

CVSS3: 9.8
81%
Высокий
около 6 лет назад
github логотип
GHSA-jr49-4p9w-qv93

The Time Capsule plugin before 1.21.16 for WordPress has an authentication bypass. Any request containing IWP_JSON_PREFIX causes the client to be logged in as the first account on the list of administrator accounts.

81%
Высокий
больше 3 лет назад

Уязвимостей на страницу