WordPress Plugin Passster-Password Protection Weak Encoding - CVE-2022-3206 - Vulnerability Database

WordPress Plugin Passster-Password Protection Weak Encoding - CVE-2022-3206

High
Reference: CVE-2022-3206
Title: WordPress Plugin Passster-Password Protection Weak Encoding
Overview:

WordPress Plugin Passster-Password Protection stores the password inside a cookie named passster using base64 encoding method which is easy to decode if leaked. WordPress Plugin Passster-Password Protection version 3.5.5.5.1 is affected prior versions may also be affected.