CVE-2014-3850
N/A
N/A
Summary
Cross-site request forgery (CSRF) vulnerability in the Member Approval plugin 131109 for WordPress allows remote attackers to hijack the authentication of administrators for requests that change plugin settings to their default and disable registration approval via a request to wp-admin/options-general.php.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://seclists.org/fulldisclosure/2014/Jun/63
- https://security.dxw.com/advisories/csrf-in-member-approval-131109-permits-unapproved-registrations
References
- http://seclists.org/fulldisclosure/2014/Jun/63
- https://security.dxw.com/advisories/csrf-in-member-approval-131109-permits-unapproved-registrations
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.