ZeroHour

CVE-2019-20203

PoC
CVSS 3.1
5.3 medium
EPSS
2%p81
Published
()
Modified
Description

The Authorized Addresses feature in the Postie plugin 1.9.40 for WordPress allows remote attackers to publish posts by spoofing the From information of an email message.

Vendors
postieplugin
Products
postie
Ecosystems
WordPress
Weakness
CWE-290
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.