RSS   Vulnerabilities for
'Math comment spam protection plugin'
   RSS

2008-01-09
 
CVE-2008-0205

CWE-79
 

 
Multiple cross-site request forgery (CSRF) vulnerabilities in math-comment-spam-protection.php in the Math Comment Spam Protection 2.1 and earlier plugin for WordPress allow remote attackers to perform actions as administrators via the (1) mcsp_opt_msg_no_answer or (2) mcsp_opt_msg_wrong_answer parameter to wp-admin/options-general.php.

 
 
CVE-2008-0204

CWE-79
 

 
Multiple cross-site scripting (XSS) vulnerabilities in math-comment-spam-protection.php in the Math Comment Spam Protection 2.1 and earlier plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) mcsp_opt_msg_no_answer or (2) mcsp_opt_msg_wrong_answer parameter to wp-admin/options-general.php.

 

 >>> Vendor: Wordpress 54 Products
Wordpress
Wordpress mu
BLIX
Blixed
Blixkrieg
Unamed theme
Unamed theme se
Sirius
POOL
Wordpressclassic
Pictpress
Wp-contactform
Cryptographp
Math comment spam protection plugin
Captcha
Filemanager
Wp forum
Wp cal plugin
Fgallery plugin
Adserve
Permalinks migration plugin
Wassup plugin
Wordspew
St newsletter plugin
Wp-footnotes
Search unleashed plugin
Dean logan wp-people plugin
Photo album plugin
Sniplets plugin
Wp download
WPSS
Download monitor plugin
Upload file plugin
Wp downloads manager
Spambam plugin
Page flip image gallery plugin
Peter's math anti-spam for wordpress
Audio player
Wordpress-users
Fcchat widget
Plugin newsletter plugin
Alert before you post
Lanoba social plugin
Slideshow gallery2
Pay-with-tweet
Terillion reviews plugin
Wp maintenance mode plugin
Booking system
Twitget plugin
Alipay plugin
Cbi referral manager
Amasin plugin
Gb gallery slideshow plugin
Mail plugin


Copyright 2024, cxsecurity.com

 

Back to Top