ThreatPress

WordPress Vulnerabilities Database

Back

WordPress Group Documents Plugin <= 1.2.1 - Cross Site Request Forgery

Product
Group Documents
Description
This plugin is prone to a document property manipulation cross site request forgery vulnerability.
Solution
Update the plugin.
Classification
Type Cross Site Request Forgery (CSRF)
OWASP Top 10 A8: Cross Site Request Forgery (CSRF)
References
SecLists
CVE
Name CVE-N/A
Versions
Affected In <= 1.2.1
Fixed In 1.2.2
Disclosure date
2015-05-15
Credits
Tom Adams