The OoohBoi Steroids for Elementor WordPress plugin before 2.1.5 has CSRF and broken access control vulnerabilities which leads user with role as low as subscriber to delete attachment.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: WPScan
Published: 2023-03-27T15:37:38.218Z
Updated: 2024-08-02T05:10:55.578Z
Reserved: 2023-01-17T10:34:22.060Z
Link: CVE-2023-0336
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-03-27T16:15:08.067
Modified: 2023-11-07T04:00:13.517
Link: CVE-2023-0336
Redhat
No data.