Aller au contenu

Fiche vulnérabilité

CVE-2023-28749 : faille moyenne CreativeMindsSolutions CM On Demand… (CVSS 4.3)

Description

Cross-Site Request Forgery (CSRF) vulnerability in CreativeMindsSolutions CM On Demand Search And Replace plugin <= 1.3.0 versions.

En bref

Sévérité
Moyenne (CVSS 4.3)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Exploitation active
Non signalée par la CISA
Publication
22 nov. 2023
Dernière mise à jour
28 avr. 2026

Produits concernés

  • CreativeMindsSolutions CM On Demand Search And Replace

Correctif et mesures

Update to 1.3.1 or a higher version.

Références

Rechercher une autre vulnérabilité dans la base CVE