Логотип exploitDog
bind:CVE-2021-24446
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24446

Количество 2

Количество 2

nvd логотип

CVE-2021-24446

почти 4 года назад

The Remove Footer Credit WordPress plugin before 1.0.6 does not have CSRF check in place when saving its settings, which could allow attacker to make logged in admins change them and lead to Stored XSS issue as well due to the lack of sanitisation

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-h45f-f9w2-prgp

почти 4 года назад

The Remove Footer Credit WordPress plugin before 1.0.6 does not have CSRF check in place when saving its settings, which could allow attacker to make logged in admins change them and lead to Stored XSS issue as well due to the lack of sanitisation

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24446

The Remove Footer Credit WordPress plugin before 1.0.6 does not have CSRF check in place when saving its settings, which could allow attacker to make logged in admins change them and lead to Stored XSS issue as well due to the lack of sanitisation

CVSS3: 5.4
0%
Низкий
почти 4 года назад
github логотип
GHSA-h45f-f9w2-prgp

The Remove Footer Credit WordPress plugin before 1.0.6 does not have CSRF check in place when saving its settings, which could allow attacker to make logged in admins change them and lead to Stored XSS issue as well due to the lack of sanitisation

0%
Низкий
почти 4 года назад

Уязвимостей на страницу