CVE-2021-34637
02.08.2021, 21:15
The Post Index WordPress plugin is vulnerable to Cross-Site Request Forgery via the OptionsPage function found in the ~/php/settings.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 0.7.5.
Vendor | Product | Version |
---|---|---|
post_index_project | post_index | 𝑥 ≤ 0.7.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References