CVE-2022-1663

The Stop Spam Comments WordPress plugin through 0.2.1.2 does not properly generate the Javascript access token for preventing abuse of comment section, allowing threat authors to easily collect the value and add it to the request.
Configurations

Configuration 1 (hide)

cpe:2.3:a:stop_spam_comments_project:stop_spam_comments:*:*:*:*:*:wordpress:*:*

History

21 Nov 2024, 06:41

Type Values Removed Values Added
References () https://wpscan.com/vulnerability/30820be1-e96a-4ff6-b1ec-efda14069e70 - Exploit, Third Party Advisory () https://wpscan.com/vulnerability/30820be1-e96a-4ff6-b1ec-efda14069e70 - Exploit, Third Party Advisory

Information

Published : 2022-08-29 18:15

Updated : 2024-11-21 06:41


NVD link : CVE-2022-1663

Mitre link : CVE-2022-1663

CVE.ORG link : CVE-2022-1663


JSON object : View

Products Affected

stop_spam_comments_project

  • stop_spam_comments
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

NVD-CWE-Other