CVE-2022-1761
PoC —CVSS 3.1
6.5 medium
EPSS
<1%p43
Published
()
Modified
Description
The Peter’s Collaboration E-mails WordPress plugin through 2.2.0 is vulnerable to CSRF due to missing nonce checks. This allows the change of its settings, which can be used to lower the required user level, change texts, the used email address and more.
- Vendors
- peter\'s collaboration e-mails project
- Products
- peter\'s collaboration e-mails
- Ecosystems
- WordPress
- Weakness
- CWE-352
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
In the news0 stories
No ingested article mentions this CVE yet.