Simple File List < 4.4.13 - Page Creation via CSRF
CVE-2022-3208
6.5MEDIUM
What is CVE-2022-3208?
The Simple File List WordPress plugin before 4.4.12 does not implement nonce checks, which could allow attackers to make a logged in admin create new page and change it's content via a CSRF attack.
Affected Version(s)
Simple File List 4.4.12