The Peter’s Collaboration E-mails WordPress plugin up to and including 2.2.0 is vulnerable to CSRF due to missing nonce checks. This allows the change of its settings, which can be used to lower the required user level, change texts, the used email address and more.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
peter\\'s collaboration e-mails project peter\\'s collaboration e-mails |