CSRF Vulnerability in FlickrRSS Plugin for WordPress
CVE-2018-6467
8.8HIGH
Summary
The FlickrRSS Plugin version 5.3.1 for WordPress is susceptible to a Cross-Site Request Forgery (CSRF) vulnerability. This weakness allows attackers to exploit the functionality available in the wp-admin/options-general.php page, potentially leading to unauthorized actions being performed on behalf of unsuspecting users. It is crucial for users to ensure they are utilizing the latest version of the plugin to mitigate the risks associated with this vulnerability.
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved