The Redirect 404 Error Page to Homepage or Custom Page with Logs WordPress plugin before 1.7.9 does not check for CSRF when deleting logs, which could allow attacker to make a logged in admin delete them via a CSRF attack
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2021-11-08T17:35:18

Updated: 2024-08-03T19:42:17.031Z

Reserved: 2021-01-14T00:00:00

Link: CVE-2021-24767

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-11-08T18:15:09.693

Modified: 2021-11-11T03:24:07.697

Link: CVE-2021-24767

cve-icon Redhat

No data.