PT-2022-27655 · WordPress · Wp Ulike Plugin
Minhtuanact
·
Published
2022-11-30
·
Updated
2024-09-16
·
CVE-2022-45842
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
WP ULike Plugin versions <= 4.6.4
Description
The issue allows attackers to manipulate rating scores by exploiting a race condition vulnerability. This can result in increased or decreased rating scores.
Recommendations
For WP ULike Plugin versions <= 4.6.4, update to a version greater than 4.6.4 to resolve the issue.
At the moment, there is no information about other mitigation measures for this specific vulnerability.
Fix
Time Of Check To Time Of Use
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Wp Ulike Plugin