CVE-2022-1251 Information
Aug 23, 2022
cve
Description
The Ask me WordPress theme before 6.8.4 does not perform nonce checks when processing POST requests to the Edit Profile page allowing an attacker to trick a user to change their profile information by sending a crafted request.
Reference
https://wpscan.com/vulnerability/34b3fc35-381a-4bd7-87e3-f1ef0a15a349
Share on: