Логотип exploitDog
bind:CVE-2023-0551
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-0551

Количество 2

Количество 2

nvd логотип

CVE-2023-0551

больше 2 лет назад

The REST API TO MiniProgram WordPress plugin through 4.6.1 does not have authorisation and CSRF checks in an AJAX action, allowing ay authenticated users, such as subscriber to call and delete arbitrary attachments

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-fw39-qr37-3qq3

больше 2 лет назад

The REST API TO MiniProgram WordPress plugin through 4.6.1 does not have authorisation and CSRF checks in an AJAX action, allowing ay authenticated users, such as subscriber to call and delete arbitrary attachments

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-0551

The REST API TO MiniProgram WordPress plugin through 4.6.1 does not have authorisation and CSRF checks in an AJAX action, allowing ay authenticated users, such as subscriber to call and delete arbitrary attachments

CVSS3: 5.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-fw39-qr37-3qq3

The REST API TO MiniProgram WordPress plugin through 4.6.1 does not have authorisation and CSRF checks in an AJAX action, allowing ay authenticated users, such as subscriber to call and delete arbitrary attachments

CVSS3: 5.4
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу