CVE-2019-15821
high · 7.5The bold-page-builder plugin before 2.3.2 for WordPress has no protection against modifying settings and importing data.
7.5
CVSS
11.0%
EPSS (exploit prob.)
96th
EPSS percentile
2019-08-30
Published
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| bold-themes | bold_page_builder | < 2.3.2 |
Check a specific version with /api/v1/cve/match.
References
- https://blog.nintechnet.com/critical-vulnerability-in-wordpress-bold-page-builder-plugin-currently-being-exploited/
- https://wordpress.org/plugins/bold-page-builder/#developers
- https://wpvulndb.com/vulnerabilities/9703
- https://blog.nintechnet.com/critical-vulnerability-in-wordpress-bold-page-builder-plugin-currently-being-exploited/
- https://wordpress.org/plugins/bold-page-builder/#developers
- https://wpvulndb.com/vulnerabilities/9703
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2019-15821