diff --git a/http/cves/2021/CVE-2021-24943.yaml b/http/cves/2021/CVE-2021-24943.yaml index 83f1e2b1ef..b37675d984 100644 --- a/http/cves/2021/CVE-2021-24943.yaml +++ b/http/cves/2021/CVE-2021-24943.yaml @@ -10,10 +10,23 @@ info: reference: - https://wpscan.com/vulnerability/ba50c590-42ee-4523-8aa0-87ac644b77ed/ - https://nvd.nist.gov/vuln/detail/CVE-2021-24943 + - https://wordpress.org/plugins/registrations-for-the-events-calendar/ + classification: + cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H + cvss-score: 9.8 + cve-id: CVE-2021-24943 + cwe-id: CWE-89 + epss-score: 0.00199 + epss-percentile: 0.56492 + cpe: cpe:2.3:a:roundupwp:registrations_for_the_events_calendar:*:*:*:*:*:wordpress:*:* metadata: - max-request: 1 verified: true - tags: cve,cve2021,wp,wp-plugin,wordpress,sqli + max-request: 1 + vendor: roundupwp + product: registrations_for_the_events_calendar + framework: wordpress + publicwww-query: "/wp-content/plugins/registrations-for-the-events-calendar/" + tags: wpscan,cve,cve2021,wp,wp-plugin,wpscan,wordpress,sqli,registrations-for-the-events-calendar variables: text: "{{rand_base(5)}}"