Vulnerability Details CVE-2022-3538
The Webmaster Tools Verification WordPress plugin through 1.2 does not have authorisation and CSRF checks when disabling plugins, allowing unauthenticated users to disable arbitrary plugins
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 37.2%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2022-3538
-
cpe:2.3:a:webmaster_tools_verification_project:webmaster_tools_verification:*