Vulnerabilities > CVE-2024-0780 - Missing Authorization vulnerability in Mediabetaprojects Enjoy Social Feed

047910
CVSS 8.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
mediabetaprojects
CWE-862

Summary

The Enjoy Social Feed plugin for WordPress website WordPress plugin through 6.2.2 does not have authorisation when resetting its database, allowing any authenticated users, such as subscriber to perform such action

Vulnerable Configurations

Part Description Count
Application
Mediabetaprojects
1

Common Weakness Enumeration (CWE)