Lucene search

K
wpvulndbWpvulndbWPVDB-ID:1F8B493D-04C2-4761-B2E9-728379A8A822
HistoryJan 20, 2023 - 12:00 a.m.

Quick Event Manager < 9.7.5 - Registration Deletion/Update via CSRF

2023-01-2000:00:00
wpscan.com
7
quick event manager
csrf
vulnerability
registration deletion
update

0.0005 Low

EPSS

Percentile

16.2%

The plugin does not have CSRF checks when deleting and updating registrations, which could allow attackers to make logged in users perform such actions via CSRF attacks

CPENameOperatorVersion
quick-event-managerlt9.7.5

0.0005 Low

EPSS

Percentile

16.2%

Related for WPVDB-ID:1F8B493D-04C2-4761-B2E9-728379A8A822