Vulnerabilities > CVE-2022-29454 - Unspecified vulnerability in Wordplus Better Messages

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
LOW
Availability impact
NONE
network
low complexity
wordplus

Summary

Cross-Site Request Forgery (CSRF) vulnerability in WordPlus Better Messages plugin <= 1.9.9.148 at WordPress allows attackers to upload files. File attachment to messages must be activated.

Vulnerable Configurations

Part Description Count
Application
Wordplus
450