ZeroHour

CVE-2022-1761

PoC
CVSS 3.1
6.5 medium
EPSS
<1%p43
Published
()
Modified
Description

The Peter’s Collaboration E-mails WordPress plugin through 2.2.0 is vulnerable to CSRF due to missing nonce checks. This allows the change of its settings, which can be used to lower the required user level, change texts, the used email address and more.

Vendors
peter\'s collaboration e-mails project
Products
peter\'s collaboration e-mails
Ecosystems
WordPress
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.