CSRF Vulnerability in Crony Cronjob Manager Plugin for WordPress
CVE-2017-14530
8HIGH
What is CVE-2017-14530?
The Crony Cronjob Manager plugin for WordPress contains a vulnerability that allows unauthorized commands to be executed due to its inadequate validation of the 'name' parameter in the 'action=manage&do=create' operation, making it susceptible to CSRF attacks. An attacker could exploit this flaw by crafting a malicious request to insert harmful scripts, potentially compromising the security of the WordPress site.