The WP Opt-in WordPress plugin through 1.4.1 is vulnerable to CSRF which allows changed plugin settings and can be used for sending spam emails.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/46b634f6-92bc-4e00-a4c0-c25135c61922 | Exploit Third Party Advisory |
https://wpscan.com/vulnerability/46b634f6-92bc-4e00-a4c0-c25135c61922 | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 07:00
Type | Values Removed | Values Added |
---|---|---|
References | () https://wpscan.com/vulnerability/46b634f6-92bc-4e00-a4c0-c25135c61922 - Exploit, Third Party Advisory |
Information
Published : 2022-07-11 13:15
Updated : 2024-11-21 07:00
NVD link : CVE-2022-2123
Mitre link : CVE-2022-2123
CVE.ORG link : CVE-2022-2123
JSON object : View
Products Affected
wp_opt-in_project
- wp_opt-in
CWE
CWE-352
Cross-Site Request Forgery (CSRF)