Логотип exploitDog
bind:CVE-2024-5167
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-5167

Количество 2

Количество 2

nvd логотип

CVE-2024-5167

больше 1 года назад

The CM Email Registration Blacklist and Whitelist WordPress plugin before 1.4.9 does not have CSRF check when adding or deleting an item from the blacklist or whitelist, which could allow attackers to make a logged in admin add or delete settings from the blacklist or whitelist menu via a CSRF attack

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-cwpg-2qv7-g34j

больше 1 года назад

The CM Email Registration Blacklist and Whitelist WordPress plugin before 1.4.9 does not have CSRF check when adding or deleting an item from the blacklist or whitelist, which could allow attackers to make a logged in admin add or delete settings from the blacklist or whitelist menu via a CSRF attack

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-5167

The CM Email Registration Blacklist and Whitelist WordPress plugin before 1.4.9 does not have CSRF check when adding or deleting an item from the blacklist or whitelist, which could allow attackers to make a logged in admin add or delete settings from the blacklist or whitelist menu via a CSRF attack

CVSS3: 8.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-cwpg-2qv7-g34j

The CM Email Registration Blacklist and Whitelist WordPress plugin before 1.4.9 does not have CSRF check when adding or deleting an item from the blacklist or whitelist, which could allow attackers to make a logged in admin add or delete settings from the blacklist or whitelist menu via a CSRF attack

CVSS3: 8.1
0%
Низкий
больше 1 года назад

Уязвимостей на страницу