Логотип exploitDog
bind:CVE-2022-4745
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-4745

Количество 2

Количество 2

nvd логотип

CVE-2022-4745

почти 3 года назад

The WP Customer Area WordPress plugin before 8.1.4 does not have CSRF checks when performing some actions such as chmod, mkdir and copy, which could allow attackers to make a logged-in admin perform them and create arbitrary folders, copy file for example.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-xqmw-24v9-r296

почти 3 года назад

The WP Customer Area WordPress plugin before 8.1.4 does not have CSRF checks when performing some actions such as chmod, mkdir and copy, which could allow attackers to make a logged-in admin perform them and create arbitrary folders, copy file for example.

CVSS3: 7.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-4745

The WP Customer Area WordPress plugin before 8.1.4 does not have CSRF checks when performing some actions such as chmod, mkdir and copy, which could allow attackers to make a logged-in admin perform them and create arbitrary folders, copy file for example.

CVSS3: 7.1
0%
Низкий
почти 3 года назад
github логотип
GHSA-xqmw-24v9-r296

The WP Customer Area WordPress plugin before 8.1.4 does not have CSRF checks when performing some actions such as chmod, mkdir and copy, which could allow attackers to make a logged-in admin perform them and create arbitrary folders, copy file for example.

CVSS3: 7.1
0%
Низкий
почти 3 года назад

Уязвимостей на страницу