ZeroHour

CVE-2023-6389

PoC ×2
CVSS 3.1
6.1 medium
EPSS
27%p98
Published
()
Modified
Description

The WordPress Toolbar WordPress plugin through 2.2.6 redirects to any URL via the "wptbto" parameter. This makes it possible for unauthenticated attackers to redirect users to potentially malicious sites if they can successfully trick them into performing an action.

Vendors
abhinavsingh
Products
wordpress toolbar
Ecosystems
WordPress
Weakness
CWE-601
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.