CVE-2023-0812
EUVD-2023-1281715.05.2023, 13:15
The Active Directory Integration / LDAP Integration WordPress plugin before 4.1.1 does not have proper authorization or nonce values for some POST requests, leading to unauthenticated data disclosure.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| miniorange | active_directory_integration_\/_ldap_integration | 𝑥 < 4.1.1 |
𝑥
= Vulnerable software versions