PT-2023-10014 · Unknown · Exit Strategy Plugin
Published
2023-04-08
·
Updated
2024-05-17
·
CVE-2013-10025
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Exit Strategy Plugin versions 1.55 through 1.58
Description
A vulnerability was found in the Exit Strategy Plugin and classified as problematic. The issue affects the
exitpageadmin function of the file exitpage.php. This manipulation leads to cross-site request forgery, and the attack may be launched remotely.Recommendations
For Exit Strategy Plugin version 1.55, upgrade to version 1.59 to address this issue.
For Exit Strategy Plugin versions 1.56, 1.57, and 1.58, upgrade to version 1.59 to address this issue.
As a temporary workaround, consider disabling the
exitpageadmin function until a patch is available.Fix
CSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Exit Strategy Plugin