7.5
CVE-2015-9345
- EPSS 0.25%
- Veröffentlicht 27.08.2019 12:15:11
- Zuletzt bearbeitet 21.11.2024 02:40:24
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Link Log – external link click monitor <= 1.4 - HTTP Response Splitting
The link-log plugin before 2.0 for WordPress has HTTP Response Splitting.
Mögliche Gegenmaßnahme
Smart External Link Click Monitor [Link Log]: Update to version 2.0, or a newer patched version
Weitere Schwachstelleninformationen
SystemWordPress Plugin
≫
Produkt
Smart External Link Click Monitor [Link Log]
Version
*-1.4
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Petersplugins ≫ Link Log SwPlatformwordpress Version < 2.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.25% | 0.458 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:P/A:N
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.