Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-28976

The Canto plugin 1.3.0 for WordPress contains a blind SSRF vulnerability. It allows an unauthenticated attacker can make a request to any internal and external server via /includes/lib/detail.php?subdomain=SSRF.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.145
EPSS Ranking 94.0%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 5.0
Products affected by CVE-2020-28976
  • Canto » Canto » Version: 1.3.0
    cpe:2.3:a:canto:canto:1.3.0


Contact Us

Shodan ® - All rights reserved