CVE-2021-24881

CVE-2021-24881

The Passster WordPress plugin before 3.5.5.9 does not properly check for password, as well as that the post to be viewed is public, allowing unauthenticated users to bypass the protection offered by the plugin, and access arbitrary posts (such as private) content, by sending a specifically crafted request.

Source: CVE-2021-24881

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다