CVE-2020-24149
Podcast Importer SecondLine <= 1.1.4 - Server-Side Request Forgery
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
Server-side request forgery (SSRF) in the Podcast Importer SecondLine (podcast-importer-secondline) plugin 1.1.4 for WordPress via the podcast_feed parameter in a secondline_import_initialize action to the secondlinepodcastimport page.
Una vulnerabilidad de tipo Server-side request forgery (SSRF) en el plugin Podcast Importer SecondLine (podcast-importer-secondline) versión 1.1.4 para WordPress, por medio del parámetro podcast_feed en una acción secondline_import_initialize de la página secondlinepodcastimport
Server-side request forgery (SSRF) in the Podcast Importer SecondLine (podcast-importer-secondline) plugin 1.1.4 and below for WordPress via the podcast_feed parameter in a secondline_import_initialize action to the secondlinepodcastimport page.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-08-13 CVE Reserved
- 2021-04-13 CVE Published
- 2024-08-04 CVE Updated
- 2024-08-04 First Exploit
- 2024-12-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-918: Server-Side Request Forgery (SSRF)
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://wordpress.org/plugins/podcast-importer-secondline/#developers | Release Notes |
URL | Date | SRC |
---|---|---|
https://github.com/secwx/research/blob/main/cve/CVE-2020-24149.md | 2024-08-04 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Secondline Search vendor "Secondline" | Podcast Importer Secondline Search vendor "Secondline" for product "Podcast Importer Secondline" | 1.1.4 Search vendor "Secondline" for product "Podcast Importer Secondline" and version "1.1.4" | wordpress |
Affected
|