Vulnerability Details CVE-2022-3538
The Webmaster Tools Verification WordPress plugin through 1.2 does not have authorisation and CSRF checks when disabling plugins, allowing unauthenticated users to disable arbitrary plugins
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 50.9%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2022-3538
-
cpe:2.3:a:webmaster_tools_verification_project:webmaster_tools_verification:*