Логотип exploitDog
bind:CVE-2023-1623
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-1623

Количество 2

Количество 2

nvd логотип

CVE-2023-1623

почти 3 года назад

The Custom Post Type UI WordPress plugin before 1.13.5 does not properly check for CSRF when sending the debug information to a user supplied email, which could allow attackers to make a logged in admin send such information to an arbitrary email address via a CSRF attack.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-q4v4-hpcx-wf3x

почти 3 года назад

The Custom Post Type UI WordPress plugin before 1.13.5 does not properly check for CSRF when sending the debug information to a user supplied email, which could allow attackers to make a logged in admin send such information to an arbitrary email address via a CSRF attack.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-1623

The Custom Post Type UI WordPress plugin before 1.13.5 does not properly check for CSRF when sending the debug information to a user supplied email, which could allow attackers to make a logged in admin send such information to an arbitrary email address via a CSRF attack.

CVSS3: 6.5
0%
Низкий
почти 3 года назад
github логотип
GHSA-q4v4-hpcx-wf3x

The Custom Post Type UI WordPress plugin before 1.13.5 does not properly check for CSRF when sending the debug information to a user supplied email, which could allow attackers to make a logged in admin send such information to an arbitrary email address via a CSRF attack.

CVSS3: 6.5
0%
Низкий
почти 3 года назад

Уязвимостей на страницу