Description
WordPress Plugin WPtouch is prone to a cross-site request forgery vulnerability. Exploiting this issue may allow a remote attacker to perform certain administrative actions and gain unauthorized access to the affected application; other attacks are also possible. WordPress Plugin WPtouch version 1.9.31 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.9.32 or latest
References
Related Vulnerabilities
WordPress Plugin Theme My Login Local File Inclusion (6.3.9)
WordPress Plugin MStore API-Create Native Android & iOS Apps On The Cloud Security Bypass (4.10.7)
Dotclear Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2014-1613)
WordPress Plugin WP-DBManager 'wp-config.php' Arbitrary File Download (2.60)