Update CVE-2023-32117.yaml
parent
4d4d008de0
commit
873bd7c3cc
|
@ -4,7 +4,7 @@ info:
|
|||
name: Integrate Google Drive <= 1.1.99 - Missing Authorization via REST API Endpoints
|
||||
author: DhiyaneshDK
|
||||
severity: high
|
||||
description: |
|
||||
description: |
|
||||
The Integrate Google Drive plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several REST API endpoints in versions up to, and including, 1.1.99. This makes it possible for unauthenticated attackers to perform a wide variety of operations, such as moving files, creating folders, copying details, and much more.
|
||||
remediation: Fixed in 1.2.0
|
||||
reference:
|
||||
|
|
Loading…
Reference in New Issue