Логотип exploitDog
bind:CVE-2022-3912
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-3912

Количество 2

Количество 2

nvd логотип

CVE-2022-3912

около 3 лет назад

The User Registration WordPress plugin before 2.2.4.1 does not properly restrict the files to be uploaded via an AJAX action available to both unauthenticated and authenticated users, which could allow unauthenticated users to upload PHP files for example.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-r7xp-c243-63mm

около 3 лет назад

The User Registration WordPress plugin before 2.2.4.1 does not properly restrict the files to be uploaded via an AJAX action available to both unauthenticated and authenticated users, which could allow unauthenticated users to upload PHP files for example.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-3912

The User Registration WordPress plugin before 2.2.4.1 does not properly restrict the files to be uploaded via an AJAX action available to both unauthenticated and authenticated users, which could allow unauthenticated users to upload PHP files for example.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-r7xp-c243-63mm

The User Registration WordPress plugin before 2.2.4.1 does not properly restrict the files to be uploaded via an AJAX action available to both unauthenticated and authenticated users, which could allow unauthenticated users to upload PHP files for example.

CVSS3: 7.5
0%
Низкий
около 3 лет назад

Уязвимостей на страницу