Lucene search

K
wpvulndbSanjay DasWPVDB-ID:DE4BC449-3DD4-4776-943F-AC59AE813132
HistorySep 20, 2022 - 12:00 a.m.

Import all XML, CSV & TXT into WordPress < 6.5.8 - Missing Authorisation

2022-09-2000:00:00
Sanjay Das
wpscan.com
6
wordpress
security
plugin
authorization
nonce

EPSS

0.001

Percentile

23.0%

The plugin does not have authorisation in some places, which could allow any authenticated users to access some of the plugin features if they manage to get the related nonce

EPSS

0.001

Percentile

23.0%

Related for WPVDB-ID:DE4BC449-3DD4-4776-943F-AC59AE813132