Vulnerability CVE-2022-23975


Published: 2022-04-18

Description:
Cross-Site Request Forgery (CSRF) in Access Demo Importer <= 1.0.7 on WordPress allows an attacker to activate any installed plugin.

Type:

CWE-352

(Cross-Site Request Forgery (CSRF))

 References:
https://wordpress.org/plugins/access-demo-importer/#developers
https://patchstack.com/database/vulnerability/access-demo-importer/wordpress-access-demo-importer-plugin-1-0-7-cross-site-request-forgery-csrf-vulnerability-leading-to-arbitrary-plugin-activation

Copyright 2026, cxsecurity.com

 

Back to Top