Vulnerability Details CVE-2022-44589
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in miniOrange miniOrange's Google Authenticator – WordPress Two Factor Authentication – 2FA , Two Factor, OTP SMS and Email | Passwordless login.This issue affects miniOrange's Google Authenticator – WordPress Two Factor Authentication – 2FA , Two Factor, OTP SMS and Email | Passwordless login: from n/a through 5.6.1.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 64.1%
CVSS Severity
CVSS v3 Score 8.1
Products affected by CVE-2022-44589
-
cpe:2.3:a:miniorange:google_authenticator:0.20
-
cpe:2.3:a:miniorange:google_authenticator:0.30
-
cpe:2.3:a:miniorange:google_authenticator:0.35
-
cpe:2.3:a:miniorange:google_authenticator:0.36
-
cpe:2.3:a:miniorange:google_authenticator:0.37
-
cpe:2.3:a:miniorange:google_authenticator:0.38
-
cpe:2.3:a:miniorange:google_authenticator:0.39
-
cpe:2.3:a:miniorange:google_authenticator:0.40
-
cpe:2.3:a:miniorange:google_authenticator:0.41
-
cpe:2.3:a:miniorange:google_authenticator:0.42
-
cpe:2.3:a:miniorange:google_authenticator:0.43
-
cpe:2.3:a:miniorange:google_authenticator:0.44
-
cpe:2.3:a:miniorange:google_authenticator:0.45
-
cpe:2.3:a:miniorange:google_authenticator:0.46
-
cpe:2.3:a:miniorange:google_authenticator:0.47
-
cpe:2.3:a:miniorange:google_authenticator:0.48
-
cpe:2.3:a:miniorange:google_authenticator:0.49
-
cpe:2.3:a:miniorange:google_authenticator:0.50
-
cpe:2.3:a:miniorange:google_authenticator:0.51
-
cpe:2.3:a:miniorange:google_authenticator:0.52
-
cpe:2.3:a:miniorange:google_authenticator:0.53
-
cpe:2.3:a:miniorange:google_authenticator:0.54
-
cpe:2.3:a:miniorange:google_authenticator:1.0.5
-
cpe:2.3:a:miniorange:google_authenticator:5.6.1