Логотип exploitDog
bind:CVE-2021-24881
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24881

Количество 2

Количество 2

nvd логотип

CVE-2021-24881

около 3 лет назад

The Passster WordPress plugin before 3.5.5.9 does not properly check for password, as well as that the post to be viewed is public, allowing unauthenticated users to bypass the protection offered by the plugin, and access arbitrary posts (such as private) content, by sending a specifically crafted request.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-c58r-vwf8-vx95

около 3 лет назад

The Passster WordPress plugin before 3.5.5.9 does not properly check for password, as well as that the post to be viewed is public, allowing unauthenticated users to bypass the protection offered by the plugin, and access arbitrary posts (such as private) content, by sending a specifically crafted request.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24881

The Passster WordPress plugin before 3.5.5.9 does not properly check for password, as well as that the post to be viewed is public, allowing unauthenticated users to bypass the protection offered by the plugin, and access arbitrary posts (such as private) content, by sending a specifically crafted request.

CVSS3: 7.5
1%
Низкий
около 3 лет назад
github логотип
GHSA-c58r-vwf8-vx95

The Passster WordPress plugin before 3.5.5.9 does not properly check for password, as well as that the post to be viewed is public, allowing unauthenticated users to bypass the protection offered by the plugin, and access arbitrary posts (such as private) content, by sending a specifically crafted request.

CVSS3: 7.5
1%
Низкий
около 3 лет назад

Уязвимостей на страницу