Seriously Simple Podcasting < 3.0.0 - Unauthenticated Administrator Email Disclosure
28Vexday Risk Score
Corrige pronto. Ella tiene exploit funcional público.
ssvc Attendcvss 5.3epss 2.5%
probabilidad de explotación
2.5%top 17% de las CVE
explotación observada
noninguna fuente lo reporta
The Seriously Simple Podcasting WordPress plugin before 3.0.0 discloses the Podcast owner's email address (which by default is the admin email address) via an unauthenticated crafted request.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Productos afectados
Unknown · Seriously Simple Podcasting