CVE-2020-36333: Critical severity themegrill demo importer vulnerability
Published May 5, 2021
·Updated
themegrill-demo-importer before 1.6.2 does not require authentication for wiping the database, because of a resetwizardactions hook.
Affected Software
1 affected component
themegrill Themegrill Demo Importer Wordpress<1.6.2
Remediation
Patch Available
Event History
May 5, 2021
CVE Published
via MITRE·03:12 AM
Data Sourced
via MITRE·03:12 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-36333?
The severity of CVE-2020-36333 is considered high due to its potential impact on database integrity.
2
How can I fix CVE-2020-36333?
To fix CVE-2020-36333, you should upgrade the ThemeGrill Demo Importer to version 1.6.2 or later.
3
What does CVE-2020-36333 affect?
CVE-2020-36333 affects the ThemeGrill Demo Importer plugin for WordPress prior to version 1.6.2.
4
What kind of vulnerability is CVE-2020-36333?
CVE-2020-36333 is an authentication bypass vulnerability that allows unauthorized database resets.
5
Are there any known exploits for CVE-2020-36333?
As of now, there are no publicly reported exploits specifically targeting CVE-2020-36333.