Логотип exploitDog
bind:CVE-2025-12061
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-12061

Количество 2

Количество 2

nvd логотип

CVE-2025-12061

2 месяца назад

The TAX SERVICE Electronic HDM WordPress plugin before 1.2.1 does not authorization and CSRF checks in an AJAX action, allowing unauthenticated users to import and execute arbitrary SQL statements

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-jgc9-7v68-88ff

2 месяца назад

The TAX SERVICE Electronic HDM WordPress plugin before 1.2.1 does not authorization and CSRF checks in an AJAX action, allowing unauthenticated users to import and execute arbitrary SQL statements

CVSS3: 8.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-12061

The TAX SERVICE Electronic HDM WordPress plugin before 1.2.1 does not authorization and CSRF checks in an AJAX action, allowing unauthenticated users to import and execute arbitrary SQL statements

CVSS3: 8.6
0%
Низкий
2 месяца назад
github логотип
GHSA-jgc9-7v68-88ff

The TAX SERVICE Electronic HDM WordPress plugin before 1.2.1 does not authorization and CSRF checks in an AJAX action, allowing unauthenticated users to import and execute arbitrary SQL statements

CVSS3: 8.6
0%
Низкий
2 месяца назад

Уязвимостей на страницу