mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-27 06:12:23 +02:00
852 B
852 B
CVE-2021-24668
Description
The MAZ Loader WordPress plugin before 1.4.1 does not enforce nonce checks, which allows attackers to make administrators delete arbitrary loaders via a CSRF attack
POC
Reference
- https://wpscan.com/vulnerability/519205ff-2ff6-41e4-9e95-475ab2ce35b9
- https://wpscan.com/vulnerability/519205ff-2ff6-41e4-9e95-475ab2ce35b9
Github
No PoCs found on GitHub currently.