logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2022-4385

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2022-4385

Description:
The Intuitive Custom Post Order WordPress plugin before 3.1.4 does not check for authorization in the update-menu-order ajax action, allowing any logged in user (with roles as low as Subscriber) to update the menu order
Last updated date:
02/28/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
02/28/2023
Reference url to background

https://wpscan.com/vulnerability/8f900d37-6eee-4434-8b9b-d10cc4a9167c

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy