CVE-2021-24767
08.11.2021, 18:15
The Redirect 404 Error Page to Homepage or Custom Page with Logs WordPress plugin before 1.7.9 does not check for CSRF when deleting logs, which could allow attacker to make a logged in admin delete them via a CSRF attack
Vendor | Product | Version |
---|---|---|
fullworks | redirect_404_error_page_to_homepage_or_custom_page_with_logs | 𝑥 < 1.7.9 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration