Логотип exploitDog
bind:CVE-2025-12093
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-12093

Количество 2

Количество 2

nvd логотип

CVE-2025-12093

2 месяца назад

The Voidek Employee Portal plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several AJAX actions in all versions up to, and including, 1.0.6. This makes it possible for unauthenticated attackers to perform several actions like registering an account, deleting users, and modifying details within the employee portal.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-5x99-573p-j6jf

2 месяца назад

The Voidek Employee Portal plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several AJAX actions in all versions up to, and including, 1.0.6. This makes it possible for unauthenticated attackers to perform several actions like registering an account, deleting users, and modifying details within the employee portal.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-12093

The Voidek Employee Portal plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several AJAX actions in all versions up to, and including, 1.0.6. This makes it possible for unauthenticated attackers to perform several actions like registering an account, deleting users, and modifying details within the employee portal.

CVSS3: 5.3
0%
Низкий
2 месяца назад
github логотип
GHSA-5x99-573p-j6jf

The Voidek Employee Portal plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several AJAX actions in all versions up to, and including, 1.0.6. This makes it possible for unauthenticated attackers to perform several actions like registering an account, deleting users, and modifying details within the employee portal.

CVSS3: 5.3
0%
Низкий
2 месяца назад

Уязвимостей на страницу