ZeroHour

CVE-2024-4758

PoC
CVSS 3.1
7.6 high
EPSS
<1%p18
Published
()
Modified
Description

The Muslim Prayer Time BD WordPress plugin through 2.4 does not have CSRF check in place when reseting its settings, which could allow attackers to make a logged in admin reset them via a CSRF attack

Vendors
realwebcare
Products
muslim prayer time bd
Ecosystems
WordPress
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:H/A:L

In the news

No ingested article mentions this CVE yet.