CVE Database
/

CVE-2022-1788

Back to search

CVE-2022-1788

Published: Jun 13, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

Due to missing checks the Change Uploaded File Permissions WordPress plugin through 4.0.0 is vulnerable to CSRF attacks. This can be used to change the file and folder permissions of any folder. This could be problematic when specific files like ini files are made readable for everyone due to this.

VendorProductVersions

Unknown

Change Uploaded File Permissions

affected
4.0.0 - <= 4.0.0

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now