Security Advisory

CVE-2022-3930

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-12-12 17:54:51
Last updated 2025-04-22 17:50:22
Assigner WPScan
State PUBLISHED

Description

The Directorist WordPress plugin before 7.4.2.2 suffers from an IDOR vulnerability which an attacker can exploit to change the password of arbitrary users instead of his own.