What the vulnerability does
01Description
Missing Authorization vulnerability in Code Parrots Easy Forms for Mailchimp.This issue affects Easy Forms for Mailchimp: from n/a through 6.9.0.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
What the vulnerability does
Missing Authorization vulnerability in Code Parrots Easy Forms for Mailchimp.This issue affects Easy Forms for Mailchimp: from n/a through 6.9.0.
Explanation of Vulnerability in Simple Terms
Easy Forms for Mailchimp versions up to 6.9.0 lack proper authorization checks, allowing unauthenticated attackers to disrupt the plugin's availability. An attacker can send requests over the network without authentication to trigger a denial-of-service condition. This affects sites using the plugin but does not expose sensitive data or allow unauthorized modifications.
What an attacker can do
Make the plugin unavailable or unresponsive by sending network requests without logging in.
Potential impact on your site
Site visitors may experience degraded performance or unavailability of forms powered by this plugin.
Conditions required to exploit
None. The attacker needs only network access; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities