logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-0772

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-0772

Description:
The Popup Builder by OptinMonster WordPress plugin before 2.12.2 does not ensure that the campaign to be loaded via some shortcodes is actually a campaign, allowing any authenticated users such as subscriber to retrieve the content of arbitrary posts, like draft, private or even password protected ones.
Last updated date:
03/16/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
03/16/2023
Reference url to background

https://wpscan.com/vulnerability/28754886-b7b4-44f7-9042-b81c542d3c9c

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy