Beveiligingsadvies

CVE-2022-1788

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-06-13 12:42:55
Laatst bijgewerkt 2024-08-03 00:16:59
Toegewezen door WPScan
CVSS-score geen score
Status PUBLISHED

Beschrijving

Due to missing checks the Change Uploaded File Permissions WordPress plugin through 4.0.0 is vulnerable to CSRF attacks. This can be used to change the file and folder permissions of any folder. This could be problematic when specific files like ini files are made readable for everyone due to this.