Логотип exploitDog
bind:CVE-2021-24717
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24717

Количество 2

Количество 2

nvd логотип

CVE-2021-24717

больше 4 лет назад

The AutomatorWP WordPress plugin before 1.7.6 does not perform capability checks which allows users with Subscriber roles to enumerate automations, disclose title of private posts or user emails, call functions, or perform privilege escalation via Ajax actions.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-w87w-64p4-f94p

больше 3 лет назад

The AutomatorWP WordPress plugin before 1.7.6 does not perform capability checks which allows users with Subscriber roles to enumerate automations, disclose title of private posts or user emails, call functions, or perform privilege escalation via Ajax actions.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24717

The AutomatorWP WordPress plugin before 1.7.6 does not perform capability checks which allows users with Subscriber roles to enumerate automations, disclose title of private posts or user emails, call functions, or perform privilege escalation via Ajax actions.

CVSS3: 8.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-w87w-64p4-f94p

The AutomatorWP WordPress plugin before 1.7.6 does not perform capability checks which allows users with Subscriber roles to enumerate automations, disclose title of private posts or user emails, call functions, or perform privilege escalation via Ajax actions.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу