4.3
CVSSv3

CVE-2023-3178

Published: 16/01/2024 Updated: 22/01/2024
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The POST SMTP Mailer WordPress plugin prior to 2.5.7 does not have proper CSRF checks in some AJAX actions, which could allow malicious users to make logged in users with the manage_postman_smtp capability delete arbitrary logs via a CSRF attack.

Vulnerable Product Search on Vulmon Subscribe to Product

wpexperts post smtp