Логотип exploitDog
bind:CVE-2022-4386
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-4386

Количество 2

Количество 2

nvd логотип

CVE-2022-4386

почти 3 года назад

The Intuitive Custom Post Order WordPress plugin before 3.1.4 lacks CSRF protection in its update-menu-order ajax action, allowing an attacker to trick any user to change the menu order via a CSRF attack

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-7cff-8p7q-7558

почти 3 года назад

The Intuitive Custom Post Order WordPress plugin through 3.1.3 lacks CSRF protection in its update-menu-order ajax action, allowing an attacker to trick any user to change the menu order via a CSRF attack

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-4386

The Intuitive Custom Post Order WordPress plugin before 3.1.4 lacks CSRF protection in its update-menu-order ajax action, allowing an attacker to trick any user to change the menu order via a CSRF attack

CVSS3: 4.3
0%
Низкий
почти 3 года назад
github логотип
GHSA-7cff-8p7q-7558

The Intuitive Custom Post Order WordPress plugin through 3.1.3 lacks CSRF protection in its update-menu-order ajax action, allowing an attacker to trick any user to change the menu order via a CSRF attack

CVSS3: 4.3
0%
Низкий
почти 3 года назад

Уязвимостей на страницу