cleantalk
Vulnerabilities and Security Researches

Staff Directory Plugin: Company Directory, 3725296b-c316-440a-875a-3068fb876b3b

Published on
-
Research Description
Staff Directory Plugin: Company Directory [staff-directory-pro] < 4.0 (closed) CSRF Bypass in Multiple Plugins Multiple plugins are affected by CSRF bypass as they do not properly check for the nonce due to a logic flaw. This could allow attackers to make logged in users do unwanted actions
Affected versions
max 4.0.
Status
vulnerable