RULE(RULE ID:331184)

Rule General Information
Release Date: 2020-09-18
Rule Name: WordPress Unauthenticated Email Forgery Vulnerability (CVE-2020-5780)
Severity:
CVE ID:
Rule Protection Details
Description: Missing Authentication for Critical Function in Icegram Email Subscribers & Newsletters Plugin for WordPress prior to version 4.5.6 allows a remote, unauthenticated attacker to conduct unauthenticated email forgery/spoofing.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Others
Reference: https://www.tenable.com/security/research/tra-2020-53
Solutions
Refer to the announcement or patch by the vendor: https://zh-cn.tenable.com/security/research/tra-2020-53