Missing Authentication for Critical Function in Icegram Email Subscribers & Newsletters Plugin for WordPress prior to version 4.5.6 allows a remote, unauthenticated attacker to conduct unauthenticated email forgery/spoofing.
References
Link | Resource |
---|---|
https://www.tenable.com/security/research/tra-2020-53 | Exploit Third Party Advisory |
Configurations
Information
Published : 2020-09-10 08:15
Updated : 2020-09-16 07:37
NVD link : CVE-2020-5780
Mitre link : CVE-2020-5780
JSON object : View
CWE
CWE-306
Missing Authentication for Critical Function
Products Affected
icegram
- email_subscribers_\&_newsletters