Lucene search

K
patchstackManideep KPATCHSTACK:D20F8D95F5A577C73294A94DAA93986C
HistoryDec 17, 2014 - 12:00 a.m.

WordPress PictoBrowser Plugin <= 0.3.1 - CSRF and XSS

2014-12-1700:00:00
Manideep K
patchstack.com
4

EPSS

0.004

Percentile

75.0%

Because of these cross site request forgery vulnerabilities, the attackers can hijack the authentication of administrators for requests. In that way they can change plugin settings via unspecified vectors or conduct cross-site scripting attacks.

Solution

           Update the plugin. 

EPSS

0.004

Percentile

75.0%

Related for PATCHSTACK:D20F8D95F5A577C73294A94DAA93986C