Vulnerability Details CVE-2023-2842
The WP Inventory Manager WordPress plugin before 2.1.0.14 does not have CSRF checks, which could allow attackers to make logged-in admins delete Inventory Items via a CSRF attack
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 32.2%
CVSS Severity
CVSS v3 Score 8.1
Products affected by CVE-2023-2842
-
cpe:2.3:a:wpinventory:wp_inventory_manager:-
-
cpe:2.3:a:wpinventory:wp_inventory_manager:2.1.0.13
-
cpe:2.3:a:wpinventory:wp_inventory_manager:2.1.0.8