Description
WordPress Plugin Acunetix WP Security is prone to a cross-site request forgery vulnerability. Exploiting this issue may allow a remote attacker to perform certain administrative actions and gain unauthorized access to the affected application; other attacks are also possible. WordPress Plugin Acunetix WP Security version 4.0.4 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 4.0.5 or latest
References
Related Vulnerabilities
Oracle Database Server CVE-2024-20995 Vulnerability (CVE-2024-20995)
WordPress Plugin Convert Plus Security Bypass (3.4.2)
WebLogic CVE-2018-2987 Vulnerability (CVE-2018-2987)
WordPress Plugin LearnDash LMS SQL Injection (3.1.5)
Jetty Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2009-5045)