Логотип exploitDog
bind:CVE-2023-4307
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-4307

Количество 2

Количество 2

nvd логотип

CVE-2023-4307

больше 2 лет назад

The Lock User Account WordPress plugin through 1.0.3 does not have CSRF check when bulk locking and unlocking accounts, which could allow attackers to make logged in admins lock and unlock arbitrary users via a CSRF attack

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-pj3h-qmr5-3qpv

больше 2 лет назад

The Lock User Account WordPress plugin through 1.0.3 does not have CSRF check when bulk locking and unlocking accounts, which could allow attackers to make logged in admins lock and unlock arbitrary users via a CSRF attack

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-4307

The Lock User Account WordPress plugin through 1.0.3 does not have CSRF check when bulk locking and unlocking accounts, which could allow attackers to make logged in admins lock and unlock arbitrary users via a CSRF attack

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-pj3h-qmr5-3qpv

The Lock User Account WordPress plugin through 1.0.3 does not have CSRF check when bulk locking and unlocking accounts, which could allow attackers to make logged in admins lock and unlock arbitrary users via a CSRF attack

CVSS3: 4.3
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу