Lucene search

K
wpexploitBob MatyasWPEX-ID:E154096D-E9B7-43BA-9A34-81A6C431025C
HistoryApr 05, 2024 - 12:00 a.m.

ENL Newsletter <= 1.0.1 - Campaign Deletion via CSRF

2024-04-0500:00:00
Bob Matyas
28
enl newsletter
csrf
campaign deletion
poc
update

6.8 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.2%

Description The plugin does not have CSRF checks in some places, which could allow attackers to make logged in admins delete arbitrary Campaigns via a CSRF attack

Make an admin open a URL like (where `<<ID>>` is a valid ID):

http://example.com/wp-admin/admin.php?page=enl-campaigns&action=campaign-delete&id=<<ID>>

6.8 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.2%

Related for WPEX-ID:E154096D-E9B7-43BA-9A34-81A6C431025C