4.3
CVSSv3

CVE-2022-1251

Published: 22/08/2022 Updated: 23/08/2022
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The Ask me WordPress theme prior to 6.8.4 does not perform nonce checks when processing POST requests to the Edit Profile page, allowing an malicious user to trick a user to change their profile information by sending a crafted request.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

inkthemes ask me