Логотип exploitDog
bind:CVE-2025-5955
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-5955

Количество 2

Количество 2

nvd логотип

CVE-2025-5955

5 месяцев назад

The Service Finder SMS System plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 2.0.0. This is due to the plugin not verifying a user's phone number before logging them in. This makes it possible for unauthenticated attackers to login as arbitrary users.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-439q-g9x9-rr2v

5 месяцев назад

The Service Finder SMS System plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 2.0.0. This is due to the plugin not verifying a user's phone number before logging them in. This makes it possible for unauthenticated attackers to login as arbitrary users.

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-5955

The Service Finder SMS System plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 2.0.0. This is due to the plugin not verifying a user's phone number before logging them in. This makes it possible for unauthenticated attackers to login as arbitrary users.

CVSS3: 8.1
0%
Низкий
5 месяцев назад
github логотип
GHSA-439q-g9x9-rr2v

The Service Finder SMS System plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 2.0.0. This is due to the plugin not verifying a user's phone number before logging them in. This makes it possible for unauthenticated attackers to login as arbitrary users.

CVSS3: 8.1
0%
Низкий
5 месяцев назад

Уязвимостей на страницу