CVE Database
/

CVE-2022-25810

Back to search

CVE-2022-25810

Published: Aug 22, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

The Transposh WordPress Translation WordPress plugin through 1.0.8 exposes a couple of sensitive actions such has “tp_reset” under the Utilities tab (/wp-admin/admin.php?page=tp_utils), which can be used/executed as the lowest-privileged user. Basically all Utilities functionalities are vulnerable this way, which involves resetting configurations and backup/restore operations.

VendorProductVersions

Unknown

Transposh WordPress Translation

affected
1.0.8 - <= 1.0.8

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now