https://www.wpvulnerability.net/plugin/easy-wp-smtp/

{\”error\”:0,\”message\”:null,\”data\”:{\”name\”:\”Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more\”,\”plugin\”:\”easy-wp-smtp\”,\”link\”:\”https:\\/\\/wordpress.org\\/plugins\\/easy-wp-smtp\\/\”,\”latest\”:\”1748438940\”,\”closed\”:0,\”vulnerability\”:[{\”uuid\”:\”c63119296a42d3a5b49b68c6de8486f80af54b569e13b54ed8dd79375b10ee2d\”,\”name\”:\”Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.4.4","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.4.4","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2020-35234","name":"CVE-2020-35234","link":"https:\\/\\/www.cve.org\\/CVERecord?id=CVE-2020-35234","description":"[en] The easy-wp-smtp plugin before 1.4.4 for WordPress allows Administrator account takeover, as exploited in the wild in December 2020. If an attacker can list the wp-content\\/plugins\\/easy-wp-smtp\\/ directory, then they can discover a log file (such as #############_debug_log.txt) that contains all password-reset links. The attacker can request a reset of the Administrator password and then use a link found there.","date":"2020-12-14"},{"id":"fea2643a8e646b52a0063179143b79dbe373a190","name":"Easy WP SMTP <= 1.4.2 – Sensitive Information Disclosure","link":"https:\\/\\/www.wordfence.com\\/threat-intel\\/vulnerabilities\\/wordpress-plugins\\/easy-wp-smtp\\/easy-wp-smtp-142-sensitive-information-disclosure","description":"The easy-wp-smtp plugin before 1.4.4 for WordPress allows Administrator account takeover, as exploited in the wild in December 2020. If an attacker can list the wp-content\\/plugins\\/easy-wp-smtp\\/ directory, then they can discover a log file (such as #############_debug_log.txt) that contains all password-reset links. The attacker can request a reset of the Administrator password and then use a link found there.","date":"2020-12-07"},{"id":"14eade63-e365-4bfc-a30e-9e2a7e739049","name":"Easy WP SMTP < 1.4.3 – Debug Log Disclosure","link":"https:\\/\\/wpscan.com\\/vulnerability\\/14eade63-e365-4bfc-a30e-9e2a7e739049","description":"The plugin has an optional debug log file generated with a random name, located in the plugin folder and which contains all email messages sent. However, this folder does not have any index page, allowing access to log file on servers with the directory listing enabled or misconfigured. This could allow attackers to gain unauthorised access to the blog by reseting the admin password by getting the reset link from the log.","date":null}],"impact":{"cwe":[{"cwe":"CWE-532","name":"Insertion of Sensitive Information into Log File","description":"The product writes sensitive information to a log file."}]}},{"uuid":"bc1f66f50c16446eb234b8dbb313b4106bbf16a0fb775755460cc1eb625a97a1","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.2.5","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.2.5","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2017-7723","name":"CVE-2017-7723","link":"https:\\/\\/www.cve.org\\/CVERecord?id=CVE-2017-7723","description":"[en] XSS exists in Easy WP SMTP (before 1.2.5), a WordPress Plugin, via the e-mail subject or body.","date":"2017-04-24"},{"id":"f3fd4fcc-b700-4a7e-9510-494a1df7501d","name":"Easy WP Smtp < 1.2.5 – XSS","link":"https:\\/\\/wpscan.com\\/vulnerability\\/f3fd4fcc-b700-4a7e-9510-494a1df7501d","description":"The Easy WP SMTP WordPress plugin was affected by a XSS security vulnerability.","date":null},{"id":"281ad257f8725164daefdc031a67541627a48f9a","name":"Easy WP SMTP <= 1.2.4 – Cross-Site Scripting","link":"https:\\/\\/www.wordfence.com\\/threat-intel\\/vulnerabilities\\/wordpress-plugins\\/easy-wp-smtp\\/easy-wp-smtp-124-cross-site-scripting","description":"XSS exists in Easy WP SMTP (before 1.2.5), a WordPress Plugin, via the e-mail subject or body.","date":"2017-04-14"}],"impact":{"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"cd3540b315db35bb99d3b496447dd053e264d478af8662d2fc704f35213868b2","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.4.3","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.4.3","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"886f29688e852941ea26aa16ab8df9fc37f8ffbc","name":"WordPress Easy WP SMTP plugin <= 1.4.2 – Unauthenticated Admin Password Reset","link":"https:\\/\\/patchstack.com\\/database\\/wordpress\\/plugin\\/easy-wp-smtp\\/vulnerability\\/wordpress-easy-wp-smtp-plugin-1-4-2-unauthenticated-admin-password-reset","description":"Unauthenticated Admin Password Reset vulnerability found by mathieg2 in WordPress Easy WP SMTP plugin (versions <= 1.4.2).","date":"2020-12-07"}],"impact":[]},{"uuid":"4182b6269b62be4b4c0fdffcc7a82751aa00d9d94b0cf691b46a4b2226071450","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.3.9.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.3.9.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"cb96b2f363fd8eb8b674bba06df55b2b6f43afce","name":"WordPress Easy WP SMTP plugin <= 1.3.9 – Unauthenticated arbitrary \\"wp_options\\" import vulnerability","link":"https:\\/\\/patchstack.com\\/database\\/wordpress\\/plugin\\/easy-wp-smtp\\/vulnerability\\/wordpress-easy-wp-smtp-plugin-1-3-9-unauthenticated-arbitrary-wp-options-import-vulnerability","description":"Unauthenticated arbitrary \\"wp_options\\" import vulnerability found Jerome Bruandet in WordPress Easy WP SMTP plugin (versions <= 1.3.9).","date":"2019-03-20"}],"impact":[]},{"uuid":"e34b57274ada9cc5a76deeb6a29e6b0ee2aaa7e0cf9839bdc1f7a08cde387196","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.5.0","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.5.0","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2022-3334","name":"CVE-2022-3334","link":"https:\\/\\/www.cve.org\\/CVERecord?id=CVE-2022-3334","description":"[en] The Easy WP SMTP WordPress plugin before 1.5.0 unserialises the content of an imported file, which could lead to PHP object injection issue when an admin import (intentionally or not) a malicious file and a suitable gadget chain is present on the blog.","date":"2022-10-31"},{"id":"20e8f77f2e1ed4eaf8c7a1690e9d72a3a9409ee3","name":"WordPress Easy WP SMTP plugin <= 1.4.9 – Auth. PHP Objection Injection vulnerability","link":"https:\\/\\/patchstack.com\\/database\\/wordpress\\/plugin\\/easy-wp-smtp\\/vulnerability\\/wordpress-easy-wp-smtp-plugin-1-4-9-auth-php-objection-injection-vulnerability","description":"Auth. PHP Objection Injection vulnerability discovered by Nguyen Duy Quoc Khanh in WordPress Easy WP SMTP plugin (versions <= 1.4.9).\\nUpdate the WordPress Easy WP SMTP plugin to the latest available version (at least 1.5.0).","date":"2022-10-10"},{"id":"873702c3979b1b7f00c12c1eee9815ec5412ce27","name":"Easy WP SMTP <= 1.4.9 – Authenticated (Administrator+) PHP Object Injection","link":"https:\\/\\/www.wordfence.com\\/threat-intel\\/vulnerabilities\\/wordpress-plugins\\/easy-wp-smtp\\/easy-wp-smtp-149-authenticated-administrator-php-object-injection","description":"The Easy WP SMTP plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.4.9 via deserialization of untrusted input when processing the contents of an imported file. This allows administrator-level attackers to inject a PHP Object. No POP chain is present in the vulnerable plugin. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.","date":"2022-10-10"},{"id":"0e735502-eaa2-4047-949e-bc8eb6b39fc9","name":"Easy WP SMTP < 1.5.0 – Admin+ PHP Objection Injection","link":"https:\\/\\/wpscan.com\\/vulnerability\\/0e735502-eaa2-4047-949e-bc8eb6b39fc9","description":"The plugin unserialises the content of an imported file, which could lead to PHP object injection issue when an admin import (intentionally or not) a malicious file and a suitable gadget chain is present on the blog.","date":null}],"impact":{"cwe":[{"cwe":"CWE-502","name":"Deserialization of Untrusted Data","description":"The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid."}]}},{"uuid":"8e0e7a239e3d0ef1ba63855fba695af8ac6e08091fd9b92fe1669ae4c0b219d0","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.5.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.5.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2022-45833","name":"CVE-2022-45833","link":"https:\\/\\/www.cve.org\\/CVERecord?id=CVE-2022-45833","description":"[en] Auth. Path Traversal vulnerability in Easy WP SMTP plugin <= 1.5.1 on WordPress.","date":"2022-12-06"},{"id":"0b4f3cdbcc7d3af49c05ca744170fc261ebc3e0c","name":"Easy WP SMTP <= 1.5.1 – Authenticated (Admin+) Directory Traversal","link":"https:\\/\\/www.wordfence.com\\/threat-intel\\/vulnerabilities\\/wordpress-plugins\\/easy-wp-smtp\\/easy-wp-smtp-151-authenticated-admin-directory-traversal","description":"The Easy WP SMTP plugin for WordPress is vulnerable to Directory Traversal in versions up to, and including, 1.5.1 possibly via the 'admin_init' function (as part of the SMTP import\\/export functionality). This allows administrator-level attackers to read the contents of arbitrary files on the server, which can contain sensitive information.","date":"2022-11-30"},{"id":"e033a769-af90-4ad9-bef1-c8b561d2e2b3","name":"Easy WP SMTP < 1.5.2 – Admin+ Arbitrary File Access","link":"https:\\/\\/wpscan.com\\/vulnerability\\/e033a769-af90-4ad9-bef1-c8b561d2e2b3","description":"The plugin does not validate some user input used to generate paths, which could allow high privilege users such as admin to access arbitrary files (even when they should not be able to, for example in multisite) via a traversal attack","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\\/AV:N\\/AC:L\\/PR:H\\/UI:N\\/S:C\\/C:H\\/I:N\\/A:N","av":"n","ac":"l","pr":"h","ui":"n","s":"c","c":"h","i":"n","a":"n","score":"6.8","severity":"m","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-22","name":"Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')","description":"The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory."}]}},{"uuid":"5848f6654a5269fe61d4ab300ddd945c3402277f7f9f5835baeea0292168bddb","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.5.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.5.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2022-45829","name":"CVE-2022-45829","link":"https:\\/\\/www.cve.org\\/CVERecord?id=CVE-2022-45829","description":"[en] Auth. Path Traversal vulnerability in\\u00a0Easy WP SMTP plugin <= 1.5.1 at\\u00a0WordPress.","date":"2022-12-06"},{"id":"680bf0a4f75d5879c1a1c65e57d653a40c3713b4","name":"Easy WP SMTP <= 1.5.1 – Authenticated (Admin+) Arbitrary File Deletion","link":"https:\\/\\/www.wordfence.com\\/threat-intel\\/vulnerabilities\\/wordpress-plugins\\/easy-wp-smtp\\/easy-wp-smtp-151-authenticated-admin-arbitrary-file-deletion","description":"The Easy WP SMTP plugin for WordPress is vulnerable to Arbitrary File Deletion versions up to, and including, 1.5.1. This is possibly due to the SMTP import\\/export functionality. This makes it possible for administrator-level attackers to arbitrarily delete files on the server, including critical files for the website's functionality.","date":"2022-11-30"},{"id":"2adf2457-707b-4d2e-81d9-d1bf304e52ba","name":"Easy WP SMTP < 1.5.2 – Admin+ Arbitrary File Deletion","link":"https:\\/\\/wpscan.com\\/vulnerability\\/2adf2457-707b-4d2e-81d9-d1bf304e52ba","description":"The plugin does not validate some user input used to generate paths, which could allow high privilege users such as admin to delete arbitrary files (even when they should not be able to, for example in multisite) via a traversal attack","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\\/AV:N\\/AC:L\\/PR:H\\/UI:N\\/S:C\\/C:N\\/I:H\\/A:H","av":"n","ac":"l","pr":"h","ui":"n","s":"c","c":"n","i":"h","a":"h","score":"8.7","severity":"h","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-22","name":"Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')","description":"The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory."}]}},{"uuid":"a1549ab883195ccd07e04cfb01a3f711e847bb653204046528fa2f6233c2adad","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.5.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.5.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2022-42699","name":"CVE-2022-42699","link":"https:\\/\\/www.cve.org\\/CVERecord?id=CVE-2022-42699","description":"[en] Auth. Remote Code Execution vulnerability in\\u00a0Easy WP SMTP plugin <= 1.5.1 on\\u00a0WordPress.","date":"2022-12-06"},{"id":"5e01ce933b3735429f94bcdd8aa84759486715c3","name":"Easy WP SMTP <= 1.5.1 – Authenticated (Admin+) Remote Code Execution","link":"https:\\/\\/www.wordfence.com\\/threat-intel\\/vulnerabilities\\/wordpress-plugins\\/easy-wp-smtp\\/easy-wp-smtp-151-authenticated-admin-remote-code-execution","description":"The Easy WP SMTP plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 1.5.1 possibly via the 'admin_init' function (as part of the SMTP import\\/export functionality). This allows administrator-level attackers to execute code on the server.","date":"2022-11-30"},{"id":"67c2e25d-b748-495c-aaf3-e47aa752a7c1","name":"Easy WP SMTP < 1.5.2 – Admin+ RCE","link":"https:\\/\\/wpscan.com\\/vulnerability\\/67c2e25d-b748-495c-aaf3-e47aa752a7c1","description":"The plugin could allow high privilege users such as admin to perform RCE even when they should not be able to (for example in multisite setups)","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\\/AV:N\\/AC:L\\/PR:H\\/UI:N\\/S:C\\/C:H\\/I:H\\/A:H","av":"n","ac":"l","pr":"h","ui":"n","s":"c","c":"h","i":"h","a":"h","score":"9.1","severity":"c","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-94","name":"Improper Control of Generation of Code ('Code Injection')","description":"The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment."}]}},{"uuid":"93fa2cdbe6ed3d91b7336d58abfb900f641a3f9ae080deac1fa0b3380a6339f6","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.5.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.5.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"b335f1c79ac57e6988f7d0ad38b0f87a38a5804c","name":"WordPress Easy WP SMTP Plugin <= 1.5.1 is vulnerable to Arbitrary File Deletion","link":"https:\\/\\/patchstack.com\\/database\\/wordpress\\/plugin\\/easy-wp-smtp\\/vulnerability\\/wordpress-easy-wp-smtp-plugin-1-5-1-auth-arbitrary-file-deletion-vulnerability","description":"Update the WordPress Easy WP SMTP plugin to the latest available version (at least 1.5.2).\\nTomS discovered and reported this Arbitrary File Deletion vulnerability in WordPress Easy WP SMTP Plugin. This could allow a malicious actor to delete files from your website. If core files are deleted from your website, it could cause your site to break and stop functioning. This vulnerability has been fixed in version 1.5.2.","date":null}],"impact":[]},{"uuid":"0e8471c29cb498310a6da4819161ac2bc956ca8f79d5674d872184165e263638","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.5.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.5.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"092b81918796185e93a91040c4459e5bf102200c","name":"WordPress Easy WP SMTP Plugin <= 1.5.1 is vulnerable to Remote Code Execution (RCE)","link":"https:\\/\\/patchstack.com\\/database\\/wordpress\\/plugin\\/easy-wp-smtp\\/vulnerability\\/wordpress-easy-wp-smtp-plugin-1-5-1-auth-remote-code-execution-rce-vulnerability","description":"Update the WordPress Easy WP SMTP plugin to the latest available version (at least 1.5.2).\\nTomS discovered and reported this Remote Code Execution (RCE) vulnerability in WordPress Easy WP SMTP Plugin. This could allow a malicious actor to execute commands on the target website. This can be used to gain backdoor access to then take full control of the website. This vulnerability has been fixed in version 1.5.2.","date":null}],"impact":[]},{"uuid":"786c06906bf98a6c0094eb27372cd24a2b9079fa3af9a1ab5bca03d95610a5d3","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.5.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.5.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"e983e06240b83ce0d6e530a761cc55640aa2e638","name":"WordPress Easy WP SMTP Plugin <= 1.5.1 is vulnerable to Directory Traversal","link":"https:\\/\\/patchstack.com\\/database\\/wordpress\\/plugin\\/easy-wp-smtp\\/vulnerability\\/wordpress-easy-wp-smtp-plugin-1-5-1-auth-arbitrary-file-read-vulnerability","description":"Update the WordPress Easy WP SMTP plugin to the latest available version (at least 1.5.2).\\nTomS discovered and reported this Directory Traversal vulnerability in WordPress Easy WP SMTP Plugin. This could allow a malicious actor to see all files in a given directory or determine if certain files\\/directories exist in given folder. This can be used to exploit other weaknesses in the system This vulnerability has been fixed in version 1.5.2.","date":null}],"impact":[]},{"uuid":"f236fe0ded88f7fb4459720db5d73d0c9a12d2070305dd5fb6947e6beb0e3746","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.3.9.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.3.9.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"ed0a41be0ce52bc2308214197262512621d760be","name":"Easy WP SMTP <= 1.3.9 – Missing Authorization to Arbitrary Options Update","link":"https:\\/\\/www.wordfence.com\\/threat-intel\\/vulnerabilities\\/wordpress-plugins\\/easy-wp-smtp\\/easy-wp-smtp-139-missing-authorization-to-arbitrary-options-update","description":"The Easy WP SMTP plugin for WordPress is vulnerable to authorization bypass in versions up to, and including, 1.3.9. This is due to missing capability checks on the admin_init() function, in addition to insufficient input validation. This makes it possible for unauthenticated attackers to modify the plugins settings and arbitrary options on the site that can be used to inject new administrative user accounts.","date":"2019-03-17"}],"impact":[]},{"uuid":"a0a13f16e380d063e972c47b21f5df293611fb0b52441470b165652e1126e9e7","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.3.9.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.3.9.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"ac8c0dd6-d2e6-4e41-88bc-45aeae941f52","name":"wpscan.com","link":"https:\\/\\/wpscan.com\\/vulnerability\\/ac8c0dd6-d2e6-4e41-88bc-45aeae941f52","description":null,"date":null}],"impact":[]},{"uuid":"cf3317e4b2ece394e4436f33395a073491ce85fd14c58ce830c155f6887a2e05","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 1.3.9.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.3.9.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2019-25141","name":"CVE-2019-25141","link":"https:\\/\\/www.cve.org\\/CVERecord?id=CVE-2019-25141","description":"[en] The Easy WP SMTP plugin for WordPress is vulnerable to authorization bypass in versions up to, and including, 1.3.9. This is due to missing capability checks on the admin_init() function, in addition to insufficient input validation. This makes it possible for unauthenticated attackers to modify the plugins settings and arbitrary options on the site that can be used to inject new administrative user accounts.","date":"2023-06-07"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\\/AV:N\\/AC:L\\/PR:N\\/UI:N\\/S:U\\/C:H\\/I:H\\/A:H","av":"n","ac":"l","pr":"n","ui":"n","s":"u","c":"h","i":"h","a":"h","score":"9.8","severity":"c","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}]}},{"uuid":"d694d1b961a5fe16777cdc240e6bfb345c98a51a136b23fd3286efd18342cc0a","name":"Easy WP SMTP \\u2013 WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more [easy-wp-smtp] < 2.3.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.3.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-3073","name":"CVE-2024-3073","link":"https:\\/\\/www.cve.org\\/CVERecord?id=CVE-2024-3073","description":"[en] The Easy WP SMTP by SendLayer \\u2013 WordPress SMTP and Email Log Plugin plugin for WordPress is vulnerable to information exposure in all versions up to, and including, 2.3.0. This is due to plugin providing the SMTP password in the SMTP Password field when viewing the settings. This makes it possible for authenticated attackers, with administrative-level access and above, to view the SMTP password for the supplied server. Although this would not be useful for attackers in most cases, if an administrator account becomes compromised this could be useful information to an attacker in a limited environment.","date":"2024-06-13"},{"id":"18bd4e0c63484da82ec201072116f79e6c3e8a58","name":"Easy WP SMTP by SendLayer <= 2.3.0 – Exposure of Sensitive Information via the UI","link":"https:\\/\\/www.wordfence.com\\/threat-intel\\/vulnerabilities\\/wordpress-plugins\\/easy-wp-smtp\\/easy-wp-smtp-by-sendlayer-230-exposure-of-sensitive-information-via-the-ui","description":"The Easy WP SMTP by SendLayer \\u2013 WordPress SMTP and Email Log Plugin plugin for WordPress is vulnerable to information exposure in all versions up to, and including, 2.3.0. This is due to plugin providing the SMTP password in the SMTP Password field when viewing the settings. This makes it possible for authenticated attackers, with administrative-level access and above, to view the SMTP password for the supplied server. Although this would not be useful for attackers in most cases, if an administrator account becomes compromised this could be useful information to an attacker in a limited environment.","date":"2024-06-12"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\\/AV:N\\/AC:L\\/PR:H\\/UI:N\\/S:U\\/C:L\\/I:N\\/A:N","av":"n","ac":"l","pr":"h","ui":"n","s":"u","c":"l","i":"n","a":"n","score":"2.7","severity":"l","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-451","name":"User Interface (UI) Misrepresentation of Critical Information","description":"The user interface (UI) does not properly represent critical information to the user, allowing the information – or its source – to be obscured or spoofed. This is often a component in phishing attacks."}]}}]},"updated":"1750132247"}