4.3
CVSSv3

CVE-2022-1760

Published: 16/01/2024 Updated: 23/01/2024
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The Core Control WordPress plugin up to and including 1.2.1 does not have CSRF check in place when updating its settings, which could allow malicious users to make a logged in admin change them via a CSRF attack

Vulnerable Product Search on Vulmon Subscribe to Product

dd32 core control