CVE-2013-3252
10.04.2014, 20:29
Cross-site request forgery (CSRF) vulnerability in the options admin page in the WP-PostViews plugin before 1.63 for WordPress allows remote attackers to hijack the authentication of administrators for requests that change plugin settings via unspecified vectors.
Vendor | Product | Version |
---|---|---|
lesterchan | wp-postviews | 𝑥 ≤ 1.62 |
lesterchan | wp-postviews | 1.00 |
lesterchan | wp-postviews | 1.01 |
lesterchan | wp-postviews | 1.02 |
lesterchan | wp-postviews | 1.10 |
lesterchan | wp-postviews | 1.11 |
lesterchan | wp-postviews | 1.20 |
lesterchan | wp-postviews | 1.30 |
lesterchan | wp-postviews | 1.31 |
lesterchan | wp-postviews | 1.40 |
lesterchan | wp-postviews | 1.50 |
lesterchan | wp-postviews | 1.60 |
lesterchan | wp-postviews | 1.61 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration