logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2022-3247

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2022-3247

Description:
The Blog2Social: Social Media Auto Post & Scheduler WordPress plugin before 6.9.10 does not have authorisation in an AJAX action, and does not ensure that the URL to make a request to is an external one. As a result, any authenticated users, such as subscriber could perform SSRF attacks
Last updated date:
10/27/2022
Type:
exploit
Confidence:
HIGH
Date of publishing:
10/27/2022
Reference url to background

https://wpscan.com/vulnerability/ee312f22-ca58-451d-a1cb-3f78a6e5ecaf

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy