Логотип exploitDog
bind:CVE-2021-24842
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24842

Количество 2

Количество 2

nvd логотип

CVE-2021-24842

около 4 лет назад

The Bulk Datetime Change WordPress plugin before 1.12 does not enforce capability checks which allows users with Contributor roles to 1) list private post titles of other users and 2) change the posted date of other users' posts.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-f76v-rqvc-f4rw

около 4 лет назад

The Bulk Datetime Change WordPress plugin before 1.12 does not enforce capability checks which allows users with Contributor roles to 1) list private post titles of other users and 2) change the posted date of other users' posts.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24842

The Bulk Datetime Change WordPress plugin before 1.12 does not enforce capability checks which allows users with Contributor roles to 1) list private post titles of other users and 2) change the posted date of other users' posts.

CVSS3: 5.4
0%
Низкий
около 4 лет назад
github логотип
GHSA-f76v-rqvc-f4rw

The Bulk Datetime Change WordPress plugin before 1.12 does not enforce capability checks which allows users with Contributor roles to 1) list private post titles of other users and 2) change the posted date of other users' posts.

CVSS3: 5.4
0%
Низкий
около 4 лет назад

Уязвимостей на страницу