PT-2026-49205 · Undefined · Undefined

Published

2026-06-15

·

Updated

2026-06-15

·

CVE-2016-20067

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
WordPress CP Polls 1.0.8 contains a cross-site request forgery vulnerability that allows attackers to perform unauthorized actions on behalf of authenticated users. Attackers can craft malicious HTML pages that execute unwanted poll operations when administrators visit the page while logged in.

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2016-20067

Affected Products

Undefined