CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
LOW
Availability Impact
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
AI Score
Confidence
Low
EPSS
Percentile
9.0%
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in J.N. Breetvelt a.K.A. OpaJaap WP Photo Album Plus allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects WP Photo Album Plus: from n/a through 8.5.02.005.
Vendor | Product | Version | CPE |
---|---|---|---|
j.n._breetvelt_a.k.a._opajaap | wp_photo_album_plus | * | cpe:2.3:a:j.n._breetvelt_a.k.a._opajaap:wp_photo_album_plus:*:*:*:*:*:wordpress:*:* |
[
{
"collectionURL": "https://wordpress.org/plugins",
"defaultStatus": "unaffected",
"packageName": "wp-photo-album-plus",
"product": "WP Photo Album Plus",
"vendor": "J.N. Breetvelt a.k.a. OpaJaap",
"versions": [
{
"changes": [
{
"at": "8.6.01.005",
"status": "unaffected"
}
],
"lessThanOrEqual": "8.5.02.005",
"status": "affected",
"version": "n/a",
"versionType": "custom"
}
]
}
]