3.7

CVE-2024-7762

Exploit

Simple Job Board < 2.12.6 - Unauthenticated Resumes Download

Simple Job Board <= 2.12.5 - Unauthenticated Resumes Download

The Simple Job Board WordPress plugin before 2.12.6 does not prevent uploaded files from being listed, allowing unauthenticated users to access and download uploaded resumes
Mögliche Gegenmaßnahme
Simple Job Board: Update to version 2.12.16, or a newer patched version
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
PresstigersSimple Job Board SwPlatformwordpress Version < 2.12.6
Weitere Schwachstelleninformationen
SystemWordPress Plugin
Produkt Simple Job Board
Version *-2.12.5
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.34% 0.26
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
134c704f-9b21-4f2e-91b3-4a467353bcc0 3.7 2.2 1.4
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://wpscan.com/vulnerability/26403e72-c927-4649-b789-694a10ad0492/
Third Party Advisory
Exploit
https://www.wordfence.com/threat-intel/vulnerabilities/id/8620bbc1-efb2-471d-89fc-02e945675e65
Third Party Advisory