Description
The Active Directory Integration / LDAP Integration WordPress plugin before 4.1.1 does not have proper authorization or nonce values for some POST requests, leading to unauthenticated data disclosure.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-12817 | The Active Directory Integration / LDAP Integration WordPress plugin before 4.1.1 does not have proper authorization or nonce values for some POST requests, leading to unauthenticated data disclosure. |
References
History
Fri, 24 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-01-24T20:59:04.022Z
Reserved: 2023-02-13T16:30:18.428Z
Link: CVE-2023-0812
Updated: 2024-08-02T05:24:34.384Z
Status : Modified
Published: 2023-05-15T13:15:10.140
Modified: 2025-01-24T21:15:09.337
Link: CVE-2023-0812
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.
EUVD