The Popup Box WordPress plugin before 2.2.7 does not have CSRF checks in some bulk actions, which could allow attackers to make logged in admins perform unwanted actions, such as deleting popups via CSRF attacks
Metrics
Affected Vendors & Products
References
History
Tue, 25 Mar 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: WPScan
Published: 2024-05-02T06:00:03.299Z
Updated: 2025-03-25T15:41:36.311Z
Reserved: 2024-04-08T18:33:20.867Z
Link: CVE-2024-3477

Updated: 2024-08-01T20:12:07.199Z

Status : Awaiting Analysis
Published: 2024-05-02T06:15:50.950
Modified: 2025-03-25T16:15:23.203
Link: CVE-2024-3477

No data.