Show plain JSON{"id": "CVE-2021-24642", "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 4.3, "accessVector": "NETWORK", "vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "MEDIUM", "availabilityImpact": "NONE", "confidentialityImpact": "NONE"}, "acInsufInfo": false, "impactScore": 2.9, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 8.6, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true}], "cvssMetricV31": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 6.5, "attackVector": "NETWORK", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N", "integrityImpact": "HIGH", "userInteraction": "REQUIRED", "attackComplexity": "LOW", "availabilityImpact": "NONE", "privilegesRequired": "NONE", "confidentialityImpact": "NONE"}, "impactScore": 3.6, "exploitabilityScore": 2.8}]}, "published": "2021-10-18T14:15:09.437", "references": [{"url": "https://wpscan.com/vulnerability/8d9129ab-33c3-44ee-b150-f7552d88e658", "tags": ["Exploit", "Third Party Advisory"], "source": "contact@wpscan.com"}, {"url": "https://wpscan.com/vulnerability/8d9129ab-33c3-44ee-b150-f7552d88e658", "tags": ["Exploit", "Third Party Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Modified", "weaknesses": [{"type": "Secondary", "source": "contact@wpscan.com", "description": [{"lang": "en", "value": "CWE-79"}, {"lang": "en", "value": "CWE-352"}]}, {"type": "Secondary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-79"}, {"lang": "en", "value": "CWE-352"}]}], "descriptions": [{"lang": "en", "value": "The Scroll Baner WordPress plugin through 1.0 does not have CSRF check in place when saving its settings, nor perform any sanitisation, escaping or validation on them. This could allow attackers to make logged in admin change them and could lead to RCE (via a file upload) as well as XSS"}, {"lang": "es", "value": "El plugin Scroll Baner de WordPress versiones hasta 1.0, no presenta una comprobaci\u00f3n de tipo CSRF cuando guarda sus configuraciones, ni lleva a cabo ning\u00fan tipo de saneo, escape o comprobaci\u00f3n de las mismas. Esto podr\u00eda permitir a atacantes hacer que los administradores registrados los cambien y podr\u00eda conllevar a RCE (por medio de una carga de archivos) as\u00ed como un ataque de tipo XSS"}], "lastModified": "2024-11-21T05:53:28.530", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:scroll_banner_project:scroll_banner:*:*:*:*:*:wordpress:*:*", "vulnerable": true, "matchCriteriaId": "57316231-3178-438F-8896-753A50EF7843", "versionEndIncluding": "1.0"}], "operator": "OR"}]}], "sourceIdentifier": "contact@wpscan.com"}