Логотип exploitDog
bind:CVE-2024-2473
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-2473

Количество 2

Количество 2

nvd логотип

CVE-2024-2473

больше 1 года назад

The WPS Hide Login plugin for WordPress is vulnerable to Login Page Disclosure in all versions up to, and including, 1.9.15.2. This is due to a bypass that is created when the 'action=postpass' parameter is supplied. This makes it possible for attackers to easily discover any login page that may have been hidden by the plugin.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-cwvf-77f4-2gc5

больше 1 года назад

The WPS Hide Login plugin for WordPress is vulnerable to Login Page Disclosure in all versions up to, and including, 1.9.15.2. This is due to a bypass that is created when the 'action=postpass' parameter is supplied. This makes it possible for attackers to easily discover any login page that may have been hidden by the plugin.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-2473

The WPS Hide Login plugin for WordPress is vulnerable to Login Page Disclosure in all versions up to, and including, 1.9.15.2. This is due to a bypass that is created when the 'action=postpass' parameter is supplied. This makes it possible for attackers to easily discover any login page that may have been hidden by the plugin.

CVSS3: 5.3
7%
Низкий
больше 1 года назад
github логотип
GHSA-cwvf-77f4-2gc5

The WPS Hide Login plugin for WordPress is vulnerable to Login Page Disclosure in all versions up to, and including, 1.9.15.2. This is due to a bypass that is created when the 'action=postpass' parameter is supplied. This makes it possible for attackers to easily discover any login page that may have been hidden by the plugin.

CVSS3: 5.3
7%
Низкий
больше 1 года назад

Уязвимостей на страницу