Логотип exploitDog
bind:CVE-2021-24238
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24238

Количество 2

Количество 2

nvd логотип

CVE-2021-24238

почти 5 лет назад

The Realteo WordPress plugin before 1.2.4, used by the Findeo Theme, did not ensure that the requested property to be deleted belong to the user making the request, allowing any authenticated users to delete arbitrary properties by tampering with the property_id parameter.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-828j-hg8h-vf6g

больше 3 лет назад

The Realteo WordPress plugin before 1.2.4, used by the Findeo Theme, did not ensure that the requested property to be deleted belong to the user making the request, allowing any authenticated users to delete arbitrary properties by tampering with the property_id parameter.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24238

The Realteo WordPress plugin before 1.2.4, used by the Findeo Theme, did not ensure that the requested property to be deleted belong to the user making the request, allowing any authenticated users to delete arbitrary properties by tampering with the property_id parameter.

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
github логотип
GHSA-828j-hg8h-vf6g

The Realteo WordPress plugin before 1.2.4, used by the Findeo Theme, did not ensure that the requested property to be deleted belong to the user making the request, allowing any authenticated users to delete arbitrary properties by tampering with the property_id parameter.

CVSS3: 6.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу