Lucene search

K
cvelistMitreCVELIST:CVE-2022-27432
HistoryMar 29, 2022 - 11:24 p.m.

CVE-2022-27432

2022-03-2923:24:46
mitre
www.cve.org
3
pluck cms
csrf
vulnerability
account takeover
cve-2022-27432

AI Score

9.1

Confidence

High

EPSS

0.001

Percentile

42.8%

A Cross-Site Request Forgery (CSRF) in Pluck CMS v4.7.15 allows attackers to change the password of any given user by exploiting this feature leading to account takeover.

AI Score

9.1

Confidence

High

EPSS

0.001

Percentile

42.8%

Related for CVELIST:CVE-2022-27432