7.5
CVE-2024-4565
- EPSS 0.25%
- Published 20.06.2024 06:15:09
- Last modified 21.11.2024 09:43:07
- Source contact@wpscan.com
- Teams watchlist Login
- Open Login
The Advanced Custom Fields (ACF) WordPress plugin before 6.3, Advanced Custom Fields Pro WordPress plugin before 6.3 allows you to display custom field values for any post via shortcode without checking for the correct access
Data is provided by the National Vulnerability Database (NVD)
Advancedcustomfields ≫ Advanced Custom Fields SwEdition- SwPlatformwordpress Version < 6.3
Advancedcustomfields ≫ Advanced Custom Fields SwEditionpro SwPlatformwordpress Version < 6.3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.25% | 0.479 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 6.5 | 2.8 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
|
134c704f-9b21-4f2e-91b3-4a467353bcc0 | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
|