← Retour aux CVEs
CVE-2015-10102
MEDIUM6.3
Description
A vulnerability, which was classified as critical, has been found in Freshdesk Plugin 1.7 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to open redirect. The attack may be launched remotely. Upgrading to version 1.8 is able to address this issue. The patch is identified as 2aaecd4e0c7c6c1dc4e6a593163d5f7aa0fa5d5b. It is recommended to upgrade the affected component. VDB-226118 is the identifier assigned to this vulnerability.
Details CVE
Score CVSS v3.16.3
SeveriteMEDIUM
Vecteur CVSSCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vecteur d'attaqueNETWORK
ComplexiteLOW
Privileges requisLOW
Interaction utilisateurNONE
Publie4/17/2023
Derniere modification11/21/2024
Sourcenvd
Observations honeypot0
Produits affectes
freshworks:freshdesk
Faiblesses (CWE)
CWE-601
References
https://github.com/wp-plugins/freshdesk-support/commit/2aaecd4e0c7c6c1dc4e6a593163d5f7aa0fa5d5b(cna@vuldb.com)
https://vuldb.com/?ctiid.226118(cna@vuldb.com)
https://vuldb.com/?id.226118(cna@vuldb.com)
https://github.com/wp-plugins/freshdesk-support/commit/2aaecd4e0c7c6c1dc4e6a593163d5f7aa0fa5d5b(af854a3a-2127-422b-91ae-364da2661108)
https://vuldb.com/?ctiid.226118(af854a3a-2127-422b-91ae-364da2661108)
https://vuldb.com/?id.226118(af854a3a-2127-422b-91ae-364da2661108)
Correlations IOC
Aucune correlation enregistree
This product uses data from the NVD API but is not endorsed or certified by the NVD.