Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 31 min 105 bronnen 1 kritiek 32 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2015-0895

MEDIUM · 6.8 CVSS Gepubliceerd: CWE-352

Beschrijving

Cross-site request forgery (CSRF) vulnerability in the All In One WP Security & Firewall plugin before 3.9.0 for WordPress allows remote attackers to hijack the authentication of administrators for requests that delete logs of 404 (aka Not Found) HTTP status codes.

Vendors

Tips And Tricks Hq

Affected products

All In One Wordpress Security And Firewall

References