Enhancement: cves/2020/CVE-2020-28976.yaml by md
parent
7f6f29a01d
commit
49025acf28
|
@ -1,7 +1,7 @@
|
|||
id: CVE-2020-28976
|
||||
|
||||
info:
|
||||
name: WordPress Canto 1.3.0 - Server-Side Request Forgery
|
||||
name: WordPress Canto 1.3.0 - Blind Server-Side Request Forgery
|
||||
author: LogicalHunter
|
||||
severity: medium
|
||||
description: WordPress Canto plugin 1.3.0 is susceptible to blind server-side request forgery. An attacker can make a request to any internal and external server via /includes/lib/detail.php?subdomain=SSRF and thereby possibly obtain sensitive information, modify data, and/or execute unauthorized administrative operations in the context of the affected site.
|
||||
|
|
Loading…
Reference in New Issue