CVE-2013-2705 Information

Description

Cross-site request forgery (CSRF) vulnerability in the WordPress Simple Paypal Shopping Cart plugin before 3.6 for WordPress allows remote attackers to hijack the authentication of administrators for requests that change plugin settings.

Reference

http://osvdb.org/93953 http://secunia.com/advisories/52963 http://www.tipsandtricks-hq.com/ecommerce/wordpress-shopping-cart-change-log-319

Share on: