WordPress QantumThemes Multiple Plugins Server-Side Request Forgery (CVE-2021-24472)

Related Vulnerabilities: CVE-2021-24472  

Check Point Reference: CPAI-2021-2095 Date Published: 8 Feb 2024 Severity: Critical Last Updated: Thursday 08 February, 2024 Source: Industry Reference:CVE-2021-24472
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? WordPress QantumThemes KenthaRadio plugin prior to 2.0.2
WordPress QantumThemes Onair2 plugin prior to 3.9.9.2 Vulnerability Description A server-side request forgery vulnerability exists in WordPress QantumThemes multiple plugins. Successful exploitation would allow attackers to create HTTP requests on behalf of the vulnerable server.