The Frontend File Manager Plugin WordPress plugin before 21.4 does not have CSRF check when uploading files, which could allow attackers to make logged in users upload files on their behalf
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2022-10-17T00:00:00

Updated: 2024-08-03T01:00:09.662Z

Reserved: 2022-09-05T00:00:00

Link: CVE-2022-3126

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-10-17T12:15:10.117

Modified: 2022-10-21T16:13:56.577

Link: CVE-2022-3126

cve-icon Redhat

No data.