Логотип exploitDog
bind:CVE-2023-6029
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-6029

Количество 2

Количество 2

nvd логотип

CVE-2023-6029

около 2 лет назад

The EazyDocs WordPress plugin before 2.3.6 does not have authorization and CSRF checks when handling documents and does not ensure that they are documents from the plugin, allowing unauthenticated users to delete arbitrary posts, as well as add and delete documents/sections.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2c3v-6gcr-6f8h

около 2 лет назад

The EazyDocs WordPress plugin before 2.3.6 does not have authorization and CSRF checks when handling documents and does not ensure that they are documents from the plugin, allowing unauthenticated users to delete arbitrary posts, as well as add and delete documents/sections.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-6029

The EazyDocs WordPress plugin before 2.3.6 does not have authorization and CSRF checks when handling documents and does not ensure that they are documents from the plugin, allowing unauthenticated users to delete arbitrary posts, as well as add and delete documents/sections.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-2c3v-6gcr-6f8h

The EazyDocs WordPress plugin before 2.3.6 does not have authorization and CSRF checks when handling documents and does not ensure that they are documents from the plugin, allowing unauthenticated users to delete arbitrary posts, as well as add and delete documents/sections.

CVSS3: 7.5
0%
Низкий
около 2 лет назад

Уязвимостей на страницу