5
CVE-2015-0890
- EPSS 2.35%
- Veröffentlicht 03.03.2015 11:59:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Quelle vultures@jpcert.or.jp
- CVE-Watchlists
- Unerledigt
reCaptcha by BestWebSoft <= 1.12 - CAPTCHA Bypass
The BestWebSoft Google Captcha (aka reCAPTCHA) plugin before 1.13 for WordPress allows remote attackers to bypass the CAPTCHA protection mechanism and obtain administrative access via unspecified vectors.
Mögliche Gegenmaßnahme
reCaptcha by BestWebSoft: Update to version 1.13, or a newer patched version
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Bestwebsoft ≫ Google Captcha SwPlatformwordpress Version <= 1.12
Weitere Schwachstelleninformationen
SystemWordPress Plugin
≫
Produkt
reCaptcha by BestWebSoft
Version
[*, 1.13)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.35% | 0.815 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:P/A:N
|
http://jvn.jp/en/jp/JVN55063777/index.html
http://jvndb.jvn.jp/jvndb/JVNDB-2015-000030
https://wordpress.org/plugins/google-captcha/changelog/
https://www.wordfence.com/threat-intel/vulnerabilities/id/35df1ab9-58c1-4270-96ef-bbb2c7ac7af6