CVE-2022-41786: WordPress WP Job Portal Plugin <= 2.0.1 is vulnerable to Broken Access Control
Published Jan 17, 2024
·Updated
Missing Authorization vulnerability in WP Job Portal WP Job Portal – A Complete Job Board.This issue affects WP Job Portal – A Complete Job Board: from n/a through 2.0.1.
Affected Software
1 affected component
wpjobportal Wp Job Portal Wordpress<=2.0.1
Remediation
Information
Update to 2.0.2 or a higher version.
Event History
Jan 17, 2024
CVE Published
via MITRE·05:14 PM
Data Sourced
via MITRE·05:14 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-41786?
CVE-2022-41786 has a medium severity rating due to its missing authorization vulnerabilities in the WP Job Portal plugin.
2
How do I fix CVE-2022-41786?
To fix CVE-2022-41786, update the WP Job Portal plugin to version 2.0.2 or later.
3
What software is affected by CVE-2022-41786?
CVE-2022-41786 affects the WP Job Portal plugin for WordPress versions up to and including 2.0.1.
4
What is the impact of CVE-2022-41786?
The impact of CVE-2022-41786 allows unauthorized users to change plugin settings, potentially compromising site integrity.
5
Who discovered CVE-2022-41786?
CVE-2022-41786 was identified by security researchers in the context of vulnerabilities affecting WordPress plugins.