Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Dxw

#40272de 53,633
6.8CVSS total
Vulnerabilidades · 1
PT-2018-4201
6.8
2018-03-19
WordPress · Disable Comments · CVE-2014-2550
**Name of the Vulnerable Software and Affected Versions** Disable Comments plugin versions prior to 1.0.4 for WordPress **Description** A cross-site request forgery (CSRF) issue allows remote attackers to hijack the authentication of administrators for requests that enable comments via a request to the "disable comments settings" page to "wp-admin/options-general.php". **Recommendations** For Disable Comments plugin versions prior to 1.0.4, update to version 1.0.4 or later to resolve the issue.