Логотип exploitDog
bind:CVE-2022-4024
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-4024

Количество 2

Количество 2

nvd логотип

CVE-2022-4024

около 3 лет назад

The Registration Forms WordPress plugin before 3.8.1.3 does not have authorisation and CSRF when deleting users via an init action handler, allowing unauthenticated attackers to delete arbitrary users (along with their posts)

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-pvr2-2hwp-5vqc

около 3 лет назад

The Registration Forms WordPress plugin before 3.8.1.3 does not have authorisation and CSRF when deleting users via an init action handler, allowing unauthenticated attackers to delete arbitrary users (along with their posts)

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-4024

The Registration Forms WordPress plugin before 3.8.1.3 does not have authorisation and CSRF when deleting users via an init action handler, allowing unauthenticated attackers to delete arbitrary users (along with their posts)

CVSS3: 6.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-pvr2-2hwp-5vqc

The Registration Forms WordPress plugin before 3.8.1.3 does not have authorisation and CSRF when deleting users via an init action handler, allowing unauthenticated attackers to delete arbitrary users (along with their posts)

CVSS3: 6.5
0%
Низкий
около 3 лет назад

Уязвимостей на страницу