WordPress Plugin 'LiteSpeed Cache' < 6.5.0.1. Unauthenticated Account Takeover

critical Nessus Plugin ID 206971

Version 1.4

Oct 25, 2024, 2:42 PM

  • Plugin metadata (update enable_cgi_scanning attribute)

Plugin Feed: 202410251442

Version 1.3

Sep 18, 2024, 8:52 AM

  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:F/RL:OF/RC:C")
  • CVSS temporal metrics ("CVSSv3 temporal vector" set to "CVSS:3.0/E:F/RL:O/RC:C")
  • Exploit attributes ("Exploit framework metasploit" set to "True")

Plugin Feed: 202409180852

Version 1.2

Sep 12, 2024, 7:22 AM

  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:POC/RL:OF/RC:C")
  • CVSS temporal metrics ("CVSSv3 temporal vector" set to "CVSS:3.0/E:P/RL:O/RC:C")

Plugin Feed: 202409120722

Version 1.1

Sep 11, 2024, 12:37 PM

  • New

Plugin Feed: 202409111237

* Changelogs are generally available for changes made after Nov 1, 2022