Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-08730
HistoryDec 14, 2021 - 12:00 a.m.

Pluck Access Control Error Vulnerability

2021-12-1400:00:00
China National Vulnerability Database
www.cnvd.org.cn
5

0.001 Low

EPSS

Percentile

28.8%

Pluck is a content management system (CMS) developed using the PHP language. an access control error vulnerability exists in Pluck-CMS Pluck, which stems from a missing SSL certificate validation issue in update_applet.php, which could lead to a man-in-the-middle attack. No details of the vulnerability are currently available.

CPENameOperatorVersion
pluck-cms pluckeq4.7.15

0.001 Low

EPSS

Percentile

28.8%

Related for CNVD-2022-08730