AppPresser – Mobile App Framework, CVE-2023-4214
- CVE, Research URL
- Application
- Published on
- Nov 18, 2023
- Research Description
- The AppPresser plugin for WordPress is vulnerable to unauthorized password resets in versions up to, and including 4.2.5. This is due to the plugin generating too weak a reset code, and the code used to reset the password has no attempt or time limit.
- Affected versions
-
max 4.3.0.
- Status
-
vulnerable