CVE-2017-8099
24.04.2017, 18:59
There is CSRF in the WHIZZ plugin before 1.1.1 for WordPress, allowing attackers to delete any WordPress users and change the plugin's status via a GET request.
| Vendor | Product | Version |
|---|---|---|
| browserweb_inc | whizz | 𝑥 ≤ 1.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration