Update CVE-2023-32117.yaml
parent
4d4d008de0
commit
873bd7c3cc
|
@ -4,7 +4,7 @@ info:
|
||||||
name: Integrate Google Drive <= 1.1.99 - Missing Authorization via REST API Endpoints
|
name: Integrate Google Drive <= 1.1.99 - Missing Authorization via REST API Endpoints
|
||||||
author: DhiyaneshDK
|
author: DhiyaneshDK
|
||||||
severity: high
|
severity: high
|
||||||
description: |
|
description: |
|
||||||
The Integrate Google Drive plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several REST API endpoints in versions up to, and including, 1.1.99. This makes it possible for unauthenticated attackers to perform a wide variety of operations, such as moving files, creating folders, copying details, and much more.
|
The Integrate Google Drive plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several REST API endpoints in versions up to, and including, 1.1.99. This makes it possible for unauthenticated attackers to perform a wide variety of operations, such as moving files, creating folders, copying details, and much more.
|
||||||
remediation: Fixed in 1.2.0
|
remediation: Fixed in 1.2.0
|
||||||
reference:
|
reference:
|
||||||
|
|
Loading…
Reference in New Issue