logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2022-4386

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2022-4386

Description:
The Intuitive Custom Post Order WordPress plugin before 3.1.4 lacks CSRF protection in its update-menu-order ajax action, allowing an attacker to trick any user to change the menu order via a CSRF attack
Last updated date:
02/28/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
02/28/2023
Reference url to background

https://wpscan.com/vulnerability/734064e3-afe9-4dfd-8d76-8a757cc94815

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy