Vulnerabilities
Vulnerable Software
Wp-Jobhunt Project:  Security Vulnerabilities
The WP-jobhunt plugin before version 2.4 for WordPress does not control AJAX requests sent to the cs_employer_ajax_profile() function through the admin-ajax.php file, which allows remote unauthenticated attackers to enumerate information about users.
CVSS Score
7.5
EPSS Score
0.419
Published
2019-03-21
The WP-jobhunt plugin before version 2.4 for WordPress does not control AJAX requests sent to the cs_reset_pass() function through the admin-ajax.php file, which allows remote unauthenticated attackers to reset the password of a user's account.
CVSS Score
9.8
EPSS Score
0.278
Published
2019-03-21


Contact Us

Shodan ® - All rights reserved