6.8
CVSSv2

CVE-2013-2707

Published: 10/05/2013 Updated: 10/05/2013
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in the Login With Ajax plugin prior to 3.1 for WordPress allows remote malicious users to hijack the authentication of arbitrary users for requests that modify this plugin's settings.

Vulnerable Product Search on Vulmon Subscribe to Product

netweblogic login_with_ajax 2.2

netweblogic login_with_ajax 2.1.5

netweblogic login_with_ajax 2.1.4

netweblogic login_with_ajax 2.1.3

netweblogic login_with_ajax 3.0

netweblogic login_with_ajax 3.0.1

netweblogic login_with_ajax 3.0.2

netweblogic login_with_ajax 3.0.3

netweblogic login_with_ajax 3.0.4.1

netweblogic login_with_ajax 2.1.1

netweblogic login_with_ajax 2.1

netweblogic login_with_ajax 3.0b3

netweblogic login_with_ajax 3.0.4

netweblogic login_with_ajax 3.1

netweblogic login_with_ajax 2.21

netweblogic login_with_ajax 2.1.2

netweblogic login_with_ajax 3.0b