The WP Fastest Cache plugin 0.8.8.5 for WordPress has CSRF via the wp-admin/admin.php wpfastestcacheoptions page.
References
Link | Resource |
---|---|
https://docs.google.com/document/d/17JSC97ecikWalB_ZTScNipFoud2aFXb5mXEZ7g-KIQI/edit?usp=sharing | Permissions Required Third Party Advisory |
https://ansawaf.blogspot.com/2019/04/csrf-multiple-stored-xss-in-wp-fastest.html | Exploit Third Party Advisory |
https://wpvulndb.com/vulnerabilities/9696 |
Configurations
Information
Published : 2019-04-15 13:29
Updated : 2019-09-06 22:15
NVD link : CVE-2018-17584
Mitre link : CVE-2018-17584
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
wpfastestcache
- wp_fastest_cache