CVE-2022-44587

Insertion of Sensitive Information into Log File vulnerability in WP 2FA allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects WP 2FA: from n/a through 2.6.3.
Configurations

Configuration 1 (hide)

cpe:2.3:a:melapress:wp_2fa:*:*:*:*:*:wordpress:*:*

History

24 Jun 2024, 19:12

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
First Time Melapress
Melapress wp 2fa
CPE cpe:2.3:a:melapress:wp_2fa:*:*:*:*:*:wordpress:*:*
References () https://patchstack.com/database/vulnerability/wp-2fa/wordpress-wp-2fa-plugin-2-6-3-sensitive-data-exposure-via-log-file-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/wp-2fa/wordpress-wp-2fa-plugin-2-6-3-sensitive-data-exposure-via-log-file-vulnerability?_s_id=cve - Third Party Advisory

21 Jun 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-21 16:15

Updated : 2024-06-24 19:12


NVD link : CVE-2022-44587

Mitre link : CVE-2022-44587


JSON object : View

Products Affected

melapress

  • wp_2fa
CWE
CWE-532

Insertion of Sensitive Information into Log File