Логотип exploitDog
bind:CVE-2021-25084
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-25084

Количество 2

Количество 2

nvd логотип

CVE-2021-25084

около 4 лет назад

The Advanced Cron Manager WordPress plugin before 2.4.2 and Advanced Cron Manager Pro WordPress plugin before 2.5.3 do not have authorisation checks in some of their AJAX actions, allowing any authenticated users, such as subscriber to call them and add or remove events as well as schedules for example

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-rggm-wjvh-78r5

около 4 лет назад

The Advanced Cron Manager WordPress plugin before 2.4.2, advanced-cron-manager-pro WordPress plugin before 2.5.3 does not have authorisation checks in some of its AJAX actions, allowing any authenticated users, such as subscriber to call them and add or remove events as well as schedules for example

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-25084

The Advanced Cron Manager WordPress plugin before 2.4.2 and Advanced Cron Manager Pro WordPress plugin before 2.5.3 do not have authorisation checks in some of their AJAX actions, allowing any authenticated users, such as subscriber to call them and add or remove events as well as schedules for example

CVSS3: 4.3
0%
Низкий
около 4 лет назад
github логотип
GHSA-rggm-wjvh-78r5

The Advanced Cron Manager WordPress plugin before 2.4.2, advanced-cron-manager-pro WordPress plugin before 2.5.3 does not have authorisation checks in some of its AJAX actions, allowing any authenticated users, such as subscriber to call them and add or remove events as well as schedules for example

0%
Низкий
около 4 лет назад

Уязвимостей на страницу