CVE-2013-2697
19.04.2013, 11:44
Cross-site request forgery (CSRF) vulnerability in the WP-DownloadManager plugin before 1.61 for WordPress allows remote attackers to hijack the authentication of arbitrary users for requests that insert XSS sequences.
Vendor | Product | Version |
---|---|---|
lester_chan | wp-downloadmanager | 𝑥 ≤ 1.60 |
lester_chan | wp-downloadmanager | 1.00 |
lester_chan | wp-downloadmanager | 1.30 |
lester_chan | wp-downloadmanager | 1.31 |
lester_chan | wp-downloadmanager | 1.40 |
lester_chan | wp-downloadmanager | 1.50 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration