Description
The Import WP WordPress plugin before 2.13.1 does not prevent users with the administrator role from pinging conducting SSRF attacks, which may be a problem in multisite configurations.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Thu, 08 May 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Importwp
Importwp import Wp |
|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:importwp:import_wp:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Importwp
Importwp import Wp |
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-08-02T08:57:35.106Z
Reserved: 2024-03-28T15:41:19.507Z
Link: CVE-2023-7253
Updated: 2024-08-02T08:57:35.106Z
Status : Analyzed
Published: 2024-04-24T05:15:46.863
Modified: 2025-05-08T19:10:43.013
Link: CVE-2023-7253
No data.
OpenCVE Enrichment
No data.
Weaknesses