logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-3076

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-3076

Description:
The MStore API WordPress plugin before 3.9.9 does not prevent visitors from creating user accounts with the role of their choice via their wholesale REST API endpoint. This is only exploitable if the site owner paid to access the plugin's pro features.
Last updated date:
07/21/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
07/17/2023
Reference url to background

https://wpscan.com/vulnerability/ac662436-29d7-4ea6-84e1-f9e229b44f5b

Type:
exploit
Confidence:
HIGH
Date of publishing:
09/19/2023
Reference url to background

https://github.com/im-hanzou/MSAPer

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy