One Article Review

Accueil - L'article:
Source CVE.webp CVE Liste
Identifiant 8313253
Date de publication 2023-02-24 20:15:16 (vue: 2023-02-24 22:08:20)
Titre CVE-2023-1029
Texte The WP Meta SEO plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.5.3. This is due to missing or incorrect nonce validation on the regenerateSitemaps function. This makes it possible for unauthenticated attackers to regenerate Sitemaps via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.
Notes
Envoyé Oui
Condensat 1029 2023 action administrator attackers can clicking cross cve due forged forgery function granted including incorrect link makes meta missing nonce performing plugin possible regenerate regeneratesitemaps request seo site sitemaps such trick unauthenticated validation versions vulnerable wordpress
Tags
Stories
Move


L'article ne semble pas avoir été repris aprés sa publication.


L'article ne semble pas avoir été repris sur un précédent.
My email: