Логотип exploitDog
bind:CVE-2022-4872
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-4872

Количество 2

Количество 2

nvd логотип

CVE-2022-4872

около 3 лет назад

The Chained Products WordPress plugin before 2.12.0 does not have authorisation and CSRF checks, as well as does not ensure that the option to be updated belong to the plugin, allowing unauthenticated attackers to set arbitrary options to 'no'

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-5fp7-mmp5-2244

около 3 лет назад

The Chained Products WordPress plugin before 2.12.0 does not have authorisation and CSRF checks, as well as does not ensure that the option to be updated belong to the plugin, allowing unauthenticated attackers to set arbitrary options to 'no'

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-4872

The Chained Products WordPress plugin before 2.12.0 does not have authorisation and CSRF checks, as well as does not ensure that the option to be updated belong to the plugin, allowing unauthenticated attackers to set arbitrary options to 'no'

CVSS3: 4.3
1%
Низкий
около 3 лет назад
github логотип
GHSA-5fp7-mmp5-2244

The Chained Products WordPress plugin before 2.12.0 does not have authorisation and CSRF checks, as well as does not ensure that the option to be updated belong to the plugin, allowing unauthenticated attackers to set arbitrary options to 'no'

CVSS3: 4.3
1%
Низкий
около 3 лет назад

Уязвимостей на страницу