CVE-2021-24668

All FrameworksWordPressCWE-352CVE-2021-24668

CVE-2021-24668

State: PUBLISHED · Published: 2021-11-23 · Updated: 2024-08-03 · Assigner: WPScan
Description
The MAZ Loader WordPress plugin before 1.4.1 does not enforce nonce checks, which allows attackers to make administrators delete arbitrary loaders via a CSRF attack
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2021/24xxx/CVE-2021-24668.json