CVE-2020-36720 Information
Jun 08, 2023
cve
Description
The Kali Forms plugin for WordPress is vulnerable to Authenticated Options Change in versions up to and including 2.1.1. This is due to the update_option lacking proper authentication checks. This makes it possible for any authenticated attacker to change (or delete) the plugin’s settings.
Reference
https://www.wordfence.com/threat-intel/vulnerabilities/id/9ed8e24d-6bd0-4638-9031-997ce2228fad?source=cve https://wordpress.org/plugins/kali-forms/#developers https://blog.nintechnet.com/wordpress-kali-forms-plugin-fixed-multiple-vulnerabilities/
Share on: