๐Ÿ” CVE Alert

CVE-2022-3208

UNKNOWN 0.0

Simple File List < 4.4.13 - Page Creation via CSRF

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

The Simple File List WordPress plugin before 4.4.12 does not implement nonce checks, which could allow attackers to make a logged in admin create new page and change it's content via a CSRF attack.

CWE CWE-352
Vendor unknown
Product simple file list
Published Oct 10, 2022
Last Updated Aug 3, 2024
Stay Ahead of the Next One

Get instant alerts for unknown simple file list

Be the first to know when new unknown vulnerabilities affecting unknown simple file list are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Unknown / Simple File List
4.4.12 < 4.4.12

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
wpscan.com: https://wpscan.com/vulnerability/80d475ca-b475-4789-8eef-9c4d880853b7

Credits

Raad Haddad of Cloudyrion GmbH