Lucene search

K
cvePatchstackCVE-2023-41239
HistoryNov 13, 2023 - 3:15 a.m.

CVE-2023-41239

2023-11-1303:15:09
CWE-918
Patchstack
web.nvd.nist.gov
27
cve
2023
41239
ssrf
vulnerability
blubrry
powerpress
podcasting
plugin
nvd

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

EPSS

0.001

Percentile

18.1%

Server-Side Request Forgery (SSRF) vulnerability in Blubrry PowerPress Podcasting plugin by Blubrry.This issue affects PowerPress Podcasting plugin by Blubrry: from n/a through 11.0.6.

Affected configurations

Nvd
Vulners
Node
blubrrypowerpressRange≀11.0.6wordpress
VendorProductVersionCPE
blubrrypowerpress*cpe:2.3:a:blubrry:powerpress:*:*:*:*:*:wordpress:*:*

CNA Affected

[
  {
    "collectionURL": "https://wordpress.org/plugins",
    "defaultStatus": "unaffected",
    "packageName": "powerpress",
    "product": "PowerPress Podcasting plugin by Blubrry",
    "vendor": "Blubrry",
    "versions": [
      {
        "changes": [
          {
            "at": "11.0.7",
            "status": "unaffected"
          }
        ],
        "lessThanOrEqual": "11.0.6",
        "status": "affected",
        "version": "n/a",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

EPSS

0.001

Percentile

18.1%