NA

CVE-2023-0335

Published: 27/03/2023 Updated: 07/11/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The WP Shamsi WordPress plugin up to and including 4.3.3 has CSRF and broken access control vulnerabilities which leads user with role as low as subscriber delete attachment.

Vulnerable Product Search on Vulmon Subscribe to Product

wpvar wp shamsi