Логотип exploitDog
bind:CVE-2023-5006
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-5006

Количество 2

Количество 2

nvd логотип

CVE-2023-5006

около 2 лет назад

The WP Discord Invite WordPress plugin before 2.5.1 does not protect some of its actions against CSRF attacks, allowing an unauthenticated attacker to perform actions on their behalf by tricking a logged in administrator to submit a crafted request.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-p5gj-h5v3-rqph

около 2 лет назад

The WP Discord Invite WordPress plugin before 2.5.1 does not protect some of its actions against CSRF attacks, allowing an unauthenticated attacker to perform actions on their behalf by tricking a logged in administrator to submit a crafted request.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-5006

The WP Discord Invite WordPress plugin before 2.5.1 does not protect some of its actions against CSRF attacks, allowing an unauthenticated attacker to perform actions on their behalf by tricking a logged in administrator to submit a crafted request.

CVSS3: 6.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-p5gj-h5v3-rqph

The WP Discord Invite WordPress plugin before 2.5.1 does not protect some of its actions against CSRF attacks, allowing an unauthenticated attacker to perform actions on their behalf by tricking a logged in administrator to submit a crafted request.

CVSS3: 6.5
0%
Низкий
около 2 лет назад

Уязвимостей на страницу