Extension WordPress
Vulnérabilités Simple 301 Redirects By BetterLinks – Easy WordPress Redirect Manager for Redirects, 404 Error Log & More
Cette page rassemble les failles publiées pour Simple 301 Redirects By BetterLinks – Easy WordPress Redirect Manager for Redirects, 404 Error Log & More, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Simple 301 Redirects By BetterLinks – Easy WordPress Redirect Manager for Redirects, 404 Error Log & More
7 fiches
Simple 301 Redirects by BetterLinks <= 2.0.7 – Missing Authorization via clicked
The Simple 301 Redirects by BetterLinks plugin for WordPress is vulnerable to unauthorized enabling of plugin usage tracking due to a missing capability check on the clicked function in all versions up to, and including, 2.0.7. This makes…
*-2.0.7
2.0.8
13/11/2023
Simple 301 Redirects <= 2.0.7 – Cross-Site Request Forgery via 'clicked'
The Simple 301 Redirects plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.0.7. This is due to missing or incorrect nonce validation on the 'clicked' function. This makes it possible for…
[*, 2.0.8)
2.0.8
30/08/2023
Simple 301 Redirects 2.0.0 – 2.0.3 – Unauthenticated Redirect Import
The import_data function of the Simple 301 Redirects by BetterLinks WordPress plugin before 2.0.4 had no capability or nonce checks making it possible for unauthenticated users to import a set of site redirects.
2.0.0-2.0.3
2.0.4
26/05/2021
Simple 301 Redirects 2.0.0 – 2.0.3 – Authenticated Arbitrary Plugin Activation
In the Simple 301 Redirects by BetterLinks WordPress plugin before 2.0.4, a lack of capability checks and insufficient nonce check on the AJAX action, simple301redirects/admin/activate_plugin, made it possible for authenticated users to activate arbitrary plugins installed on vulnerable…
2.0.0-2.0.3
2.0.4
26/05/2021
Simple 301 Redirects 2.0.0 – 2.0.3 – Authenticated Arbitrary Plugin Installation
A lack of capability checks and insufficient nonce check on the AJAX action in the Simple 301 Redirects by BetterLinks WordPress plugin before 2.0.4, made it possible for authenticated users to install arbitrary plugins on vulnerable sites.
2.0.0-2.0.3
2.0.4
26/05/2021
Simple 301 Redirects 2.0.0 – 2.0.3 – Unauthenticated Redirect Export
The export_data function of the Simple 301 Redirects by BetterLinks WordPress plugin before 2.0.4 had no capability or nonce checks making it possible for unauthenticated users to export a site's redirects.
2.0.0-2.0.3
2.0.4
26/05/2021
Simple 301 Redirects 2.0.0 – 2.0.3 – Authenticated Wildcard Activation and Retrieval
In the Simple 301 Redirects by BetterLinks WordPress plugin before 2.0.4, the lack of capability checks and insufficient nonce check on the AJAX actions, simple301redirects/admin/get_wildcard and simple301redirects/admin/wildcard, made it possible for authenticated users to retrieve and update the…
2.0.0-2.0.3
2.0.4
26/05/2021
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.