Medium severity5.9NVD Advisory· Published Oct 17, 2022· Updated Jun 17, 2026
CVE-2022-3206
CVE-2022-3206
Description
The Passster WordPress plugin before 3.5.5.5.2 stores the password inside a cookie named "passster" using base64 encoding method which is easy to decode. This puts the password at risk in case the cookies get leaked.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:passster_project:passster:*:*:*:*:*:wordpress:*:*Range: <3.5.5.5.2
- WordPress/Passster plugindescription
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/a8963750-62bf-403e-a906-94f371ed2a7anvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.