Nonce token leak vulnerability leading to arbitrary file upload, theme deletion, plugin settings change discovered in Responsive Menu WordPress plugin (versions <= 4.1.7).
References
Configurations
Information
Published : 2022-03-18 11:15
Updated : 2022-03-25 11:43
NVD link : CVE-2022-25602
Mitre link : CVE-2022-25602
JSON object : View
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
Products Affected
expresstech
- responsive_menu