PT-2019-14320 · Articulate · Insert/Embed Articulate Content Into Wordpress
Publicado
2019-08-27
·
Atualizado
2020-08-24
·
CVE-2019-15648
CVSS v3.1
6.5
Média
| Vetor | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
insert-or-embed-articulate-content-into-wordpress plugin versions prior to 4.29991
Description
The issue is related to insufficient restrictions on deleting or renaming content by a Subscriber.
Recommendations
For versions prior to 4.29991, update to version 4.29991 or later to resolve the issue.
Exploit
Correção
CSRF
Missing Authorization
Improper Authentication
Path traversal
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Insert/Embed Articulate Content Into Wordpress