← volver
CVE-2020-11515explotación observada

CVE-2020-11515

40Vexday Risk Score

Corrige ahora. Ella explotación observada por VulnCheck y tiene exploit funcional público.

ssvc Actepss 2.1%
de la publicación al arma
Publicada en NVD7 abr
VulnCheck+1028d
probabilidad de explotación
2.1%top 20% de las CVE
explotación observada
VulnCheck
The Rank Math plugin through 1.0.40.2 for WordPress allows unauthenticated remote attackers to create new URIs (that redirect to an external web site) via the unsecured rankmath/v1/updateRedirection REST API endpoint. In other words, this is not an "Open Redirect" issue; instead, it allows the attacker to create a new URI with an arbitrary name (e.g., the /exampleredirect URI).
Productos afectados
n/a · n/a