CVE-2019-19979
26.12.2019, 03:15
A flaw in the WordPress plugin, WP Maintenance before 5.0.6, allowed attackers to enable a vulnerable site's maintenance mode and inject malicious code affecting site visitors. There was CSRF with resultant XSS.
Vendor | Product | Version |
---|---|---|
wp_maintenance_project | wp_maintenance | 𝑥 < 5.0.6 |
𝑥
= Vulnerable software versions