The del_reistered_domains AJAX action of the Software License Manager WordPress plugin before 4.5.1 does not have any CSRF checks, and is vulnerable to a CSRF attack
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: WPScan

Published: 2021-10-11T10:45:45

Updated: 2021-10-11T10:45:45

Reserved: 2021-01-14T00:00:00


Link: CVE-2021-24711

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-10-11T11:15:09.273

Modified: 2021-10-15T16:25:25.023


Link: CVE-2021-24711

JSON object: View

cve-icon Redhat Information

No data.

CWE