1 results (0.003 seconds)
CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 1
CVE-2021-24767 – Redirect 404 Error Page to Homepage or Custom Page with Logs < 1.7.9 - Log Deletion via CSRF
https://notcve.org/view.php?id=CVE-2021-24767
The Redirect 404 Error Page to Homepage or Custom Page with Logs WordPress plugin before 1.7.9 does not check for CSRF when deleting logs, which could allow attacker to make a logged in admin delete them via a CSRF attack El plugin Redirect 404 Error Page to Homepage or Custom Page with Logs de WordPress versiones anteriores a 1.7.9, no comprueba la existencia de CSRF cuando se borran los registros, lo que podría permitir a un atacante hacer que un administrador conectado los borre por medio de un ataque de tipo CSRF • https://wpscan.com/vulnerability/0b35ad4a-3d94-49b1-a98d-07acf8dd4962 • CWE-352: Cross-Site Request Forgery (CSRF) •