includes/options.php in the motors-car-dealership-classified-listings (aka Motors - Car Dealer & Classified Ads) plugin through 1.4.0 for WordPress allows unauthenticated options changes.
References
Link | Resource |
---|---|
https://blog.nintechnet.com/multiple-vulnerabilities-in-wordpress-motors-car-dealer-classified-ads-plugin/ | Exploit Third Party Advisory |
https://wordpress.org/plugins/motors-car-dealership-classified-listings/#developers | Release Notes Third Party Advisory |
https://wpvulndb.com/vulnerabilities/9884 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-02-24T18:25:34
Updated: 2020-02-25T08:06:05
Reserved: 2019-10-06T00:00:00
Link: CVE-2019-17228
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-02-24T19:15:13.950
Modified: 2020-02-26T16:55:40.170
Link: CVE-2019-17228
JSON object: View
Redhat Information
No data.
CWE