PT-2023-9949 · Bestwebsoft · Bestwebsoft Facebook Like Button

Published

2023-04-09

·

Updated

2024-05-17

·

CVE-2012-10012

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions BestWebSoft Facebook Like Button versions up to 2.13
Description A vulnerability has been found in the function fcbk bttn plgn settings page of the file facebook-button-plugin.php, leading to cross-site request forgery. The attack can be launched remotely.
Recommendations For BestWebSoft Facebook Like Button versions up to 2.13, apply a patch to fix this issue. As a temporary workaround, consider disabling the fcbk bttn plgn settings page function until a patch is available.

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2012-10012

Affected Products

Bestwebsoft Facebook Like Button