CVE-2024-3163
EUVD-2024-3176012.09.2024, 06:15
The Easy Property Listings WordPress plugin before 3.5.4 does not have CSRF check when deleting contacts in bulk, which could allow attackers to make a logged in admin delete them via a CSRF attack
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| easy_property_listings | easy_property_listings | 𝑥 ≤ 3.5.4 |
| realestateconnected | easy_property_listings | 𝑥 < 3.5.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration