CyberSec.Space Logo
CVEブラウザに戻る

CVE-2021-24280

HIGH
8.8
CVSS Severity Score
EPSS Score0.0500%
EPSS Percentile38.12th
Published2021年5月14日
Last Modified2024年11月21日

Vulnerability Description

In the Redirection for Contact Form 7 WordPress plugin before 2.3.4, any authenticated user, such as a subscriber, could use the import_from_debug AJAX action to inject PHP objects.

Affected Platforms (CPE)

📦
Querysol

Redirection For Contact Form 7

< 2.3.4

References & Advisories

関連する脆弱性情報