CVE-2022-47424: WordPress ARMember plugin <= 4.0.5 - Cross Site Request Forgery (CSRF)
Cross-Site Request Forgery (CSRF) vulnerability in Repute InfoSystems ARMember, Repute InfoSystems ARMember Premium allows Cross-Site Request Forgery.This issue affects ARMember: from n/a through 4.0.5; ARMember Premium: from n/a before 6.7.1.
Affected Software
Remediation
Information
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2022-47424?
CVE-2022-47424 is classified as a Cross-Site Request Forgery (CSRF) vulnerability that can lead to unauthorized actions on behalf of users.
How do I fix CVE-2022-47424?
To mitigate CVE-2022-47424, upgrade ARMember to version 4.0.6 or higher, and ARMember Premium to version 6.7.1 or higher.
Which versions are affected by CVE-2022-47424?
CVE-2022-47424 affects ARMember versions n/a through 4.0.5 and ARMember Premium versions n/a before 6.7.1.
Is my installation vulnerable to CVE-2022-47424?
If you are running ARMember version 4.0.5 or earlier, or ARMember Premium version prior to 6.7.1, your installation is vulnerable to CVE-2022-47424.
What are the potential impacts of CVE-2022-47424?
CVE-2022-47424 can allow attackers to perform actions on behalf of an authenticated user, potentially compromising user accounts.