CVE-2024-43339

Cross-Site Request Forgery (CSRF) vulnerability in WebinarPress allows Cross-Site Scripting (XSS).This issue affects WebinarPress: from n/a through 1.33.20.
Configurations

Configuration 1 (hide)

cpe:2.3:a:webinarpress:webinarpress:*:*:*:*:*:wordpress:*:*

History

27 Aug 2024, 15:58

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 5.4
v2 : unknown
v3 : 6.1
First Time Webinarpress webinarpress
Webinarpress
CPE cpe:2.3:a:webinarpress:webinarpress:*:*:*:*:*:wordpress:*:*
References () https://patchstack.com/database/vulnerability/wp-webinarsystem/wordpress-wordpress-webinar-plugin-webinarpress-plugin-1-33-20-cross-site-request-forgery-csrf-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/wp-webinarsystem/wordpress-wordpress-webinar-plugin-webinarpress-plugin-1-33-20-cross-site-request-forgery-csrf-vulnerability?_s_id=cve - Third Party Advisory

27 Aug 2024, 13:01

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad de Cross-Site Request Forgery (CSRF) en WebinarPress permite cross-site scripting (XSS). Este problema afecta a WebinarPress: desde n/a hasta 1.33.20.

26 Aug 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-26 21:15

Updated : 2024-08-27 15:58


NVD link : CVE-2024-43339

Mitre link : CVE-2024-43339

CVE.ORG link : CVE-2024-43339


JSON object : View

Products Affected

webinarpress

  • webinarpress
CWE
CWE-352

Cross-Site Request Forgery (CSRF)