CVE-2008-4734

Cross-site request forgery (CSRF) vulnerability in the wpcr_do_options_page function in WP Comment Remix plugin before 1.4.4 for WordPress allows remote attackers to perform unauthorized actions as administrators via a request that sets the wpcr_hidden_form_input parameter.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:pressography:wp_comment_remix_plugin:*:*:*:*:*:*:*:*
cpe:2.3:a:pressography:wp_comment_remix_plugin:1.4:*:*:*:*:*:*:*
cpe:2.3:a:wordpress:wordpress:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-10-24 10:30

Updated : 2024-02-04 17:33


NVD link : CVE-2008-4734

Mitre link : CVE-2008-4734

CVE.ORG link : CVE-2008-4734


JSON object : View

Products Affected

wordpress

  • wordpress

pressography

  • wp_comment_remix_plugin
CWE
CWE-352

Cross-Site Request Forgery (CSRF)