Related Vulnerabilities: CVE-2017-5489  

A cross-site request forgery (CSRF) bypass has been discovered in wordpress via uploading a Flash file.

Severity Medium

Remote Yes

Type Cross-site request forgery

Description

A cross-site request forgery (CSRF) bypass has been discovered in wordpress via uploading a Flash file.

AVG-142 wordpress 4.7-1 4.7.1-1 High Fixed FS#52555

15 Jan 2017 ASA-201701-22 AVG-142 wordpress High multiple issues