Infigosoftware ≫ Clock In Portal- Staff & Attendance Management
3 Schwachstellen gefunden.
Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
4.3
CVE-2023-0762
- EPSS 0.07%
- Veröffentlicht 15.05.2023 13:15:10
- Zuletzt bearbeitet 24.01.2025 21:15:09
The Clock In Portal- Staff & Attendance Management WordPress plugin through 2.1 does not have CSRF check when deleting designations, which could allow attackers to make logged in admins delete arbitrary designations via a CSRF attack
4.3
CVE-2023-0763
- EPSS 0.07%
- Veröffentlicht 15.05.2023 13:15:10
- Zuletzt bearbeitet 24.01.2025 21:15:09
The Clock In Portal- Staff & Attendance Management WordPress plugin through 2.1 does not have CSRF check when deleting Holidays, which could allow attackers to make logged in admins delete arbitrary holidays via a CSRF attack
4.3
CVE-2023-0761
- EPSS 0.07%
- Veröffentlicht 15.05.2023 13:15:09
- Zuletzt bearbeitet 24.01.2025 22:15:32
The Clock In Portal- Staff & Attendance Management WordPress plugin through 2.1 does not have CSRF check when deleting Staff members, which could allow attackers to make logged in admins delete arbitrary Staff via a CSRF attack
1