logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-0328

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-0328

Description:
The WPCode WordPress plugin before 2.0.7 does not have adequate privilege checks in place for several AJAX actions, only checking the nonce. This may lead to allowing any authenticated user who can edit posts to call the endpoints related to WPCode Library authentication (such as update and delete the auth key).
Last updated date:
03/11/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
03/11/2023
Reference url to background

https://wpscan.com/vulnerability/3c4318a9-a3c5-409b-a52e-edd8583c3c43

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy