Vulnerabilities > CVE-2023-2326 - Unspecified vulnerability in Gsheetconnector Gravity Forms Google Sheets Connector
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
HIGH Availability impact
NONE Summary
The Gravity Forms Google Sheet Connector WordPress plugin before 1.3.5, gsheetconnector-gravityforms-pro WordPress plugin through 1.3.5 does not have CSRF check when updating its Access Code, which could allow attackers to make logged in admin change the access code to an arbitrary one via a CSRF attack
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |