4.3
CVSSv2

CVE-2014-5196

Published: 12/08/2014 Updated: 04/12/2015
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in improved-user-search-in-backend.php in the backend in the Improved user search in backend plugin prior to 1.2.5 for WordPress allows remote malicious users to hijack the authentication of administrators for requests that insert XSS sequences via the iusib_meta_fields parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

improved user search in backend project improved user search in backend