Update CVE-2022-1442.md

This commit is contained in:
之乎者也 2023-04-13 15:29:51 +08:00 committed by GitHub
parent 7fa4b42fab
commit 0ff84b6629
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -4,7 +4,7 @@
| :----: | :-----|
| **Chinese name** | WordPress Metform 插件 forms 文件信息泄露漏洞CVE-2022-1442 |
| **CVSS core** | 7.5 |
| **FOFA Query** (click to view the results directly)| [body=\"wp-content/plugins/metform/\"]([https://xxx](https://en.fofa.info/result?qbase64=Ym9keT0id3AtY29udGVudC9wbHVnaW5zL21ldGZvcm0vIg%3D%3D)) |
| **FOFA Query** (click to view the results directly)| [body=\"wp-content/plugins/metform/\"](https://en.fofa.info/result?qbase64=Ym9keT0id3AtY29udGVudC9wbHVnaW5zL21ldGZvcm0vIg%3D%3D) |
| **Number of assets affected** | 13517 |
| **Description** | WordPress plugin Metform is a secure contact form plugin for WordPress. There is a security vulnerability in the WordPress plugin Metform. The vulnerability is caused by improper access control in the ~/core/forms/action.php file, and attackers can obtain various key information of users. |
| **Impact** | There is a security vulnerability in the WordPress plugin Metform. The vulnerability is caused by improper access control in the ~/core/forms/action.php file, and attackers can obtain various key information of users. |