The Enjoy Social Feed plugin for WordPress website WordPress plugin through 6.2.2 does not have authorisation when resetting its database, allowing any authenticated users, such as subscriber to perform such action
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/be3045b1-72e6-450a-8dd2-4702a9328447/ | Exploit Third Party Advisory |
https://wpscan.com/vulnerability/be3045b1-72e6-450a-8dd2-4702a9328447/ | Exploit Third Party Advisory |
Configurations
History
27 Feb 2025, 03:34
Type | Values Removed | Values Added |
---|---|---|
References | () https://wpscan.com/vulnerability/be3045b1-72e6-450a-8dd2-4702a9328447/ - Exploit, Third Party Advisory | |
CPE | cpe:2.3:a:mediabetaprojects:enjoy_social_feed:*:*:*:*:*:wordpress:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
CWE | CWE-862 | |
First Time |
Mediabetaprojects
Mediabetaprojects enjoy Social Feed |
Information
Published : 2024-03-18 19:15
Updated : 2025-03-14 17:15
NVD link : CVE-2024-0780
Mitre link : CVE-2024-0780
CVE.ORG link : CVE-2024-0780
JSON object : View
Products Affected
mediabetaprojects
- enjoy_social_feed
CWE
CWE-862
Missing Authorization