CyberSec.Space Logo
返回 CVE 浏览器

CVE-2021-24278

HIGH
7.5
CVSS Severity Score
EPSS Score0.1490%
EPSS Percentile33.24th
Published2021年5月14日
Last Modified2024年11月21日

Vulnerability Description

In the Redirection for Contact Form 7 WordPress plugin before 2.3.4, unauthenticated users can use the wpcf7r_get_nonce AJAX action to retrieve a valid nonce for any WordPress action/function.

Affected Platforms (CPE)

📦
Querysol

Redirection For Contact Form 7

< 2.3.4

References & Advisories

相关漏洞威胁

CVE-2021-24278 Detail & Impact Analysis | CVSS 7.5 (HIGH) | Cyber-Sec.Space | Cyber-Sec.Space