Cross-site request forgery (CSRF) vulnerability in the wpcr_do_options_page function in WP Comment Remix plugin prior to 1.4.4 for WordPress allows remote malicious users to perform unauthorized actions as administrators via a request that sets the wpcr_hidden_form_input parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
pressography wp_comment_remix_plugin |
||
pressography wp_comment_remix_plugin 1.4 |