Description
The WP Meta SEO WordPress plugin before 4.5.3 does not authorize several ajax actions, allowing low-privilege users to make updates to certain data and leading to an arbitrary redirect vulnerability.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-12867 | The WP Meta SEO WordPress plugin before 4.5.3 does not authorize several ajax actions, allowing low-privilege users to make updates to certain data and leading to an arbitrary redirect vulnerability. |
References
History
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-02-26T18:48:38.355Z
Reserved: 2023-02-16T22:50:25.786Z
Link: CVE-2023-0876
Updated: 2024-08-02T05:24:34.637Z
Status : Modified
Published: 2023-03-20T16:15:12.653
Modified: 2025-02-26T19:15:15.883
Link: CVE-2023-0876
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.
EUVD