CVE-2021-25073
EUVD-2021-1198524.01.2022, 08:15
The WP125 WordPress plugin before 1.5.5 does not have CSRF checks in various action, for example when deleting an ad, allowing attackers to make a logged in admin delete them via a CSRF attack
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| webmaster-source | wp125 | 𝑥 < 1.5.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration