cve/2024/CVE-2024-6289.md
2024-07-25 21:25:12 +00:00

757 B

CVE-2024-6289

Description

The WPS Hide Login WordPress plugin before 1.9.16.4 does not prevent redirects to the login page via the auth_redirect WordPress function, allowing an unauthenticated visitor to access the hidden login page.

POC

Reference

Github

No PoCs found on GitHub currently.