CVE-2013-2706: CSRF

Published Apr 11, 2014
·
Updated

Cross-site request forgery (CSRF) vulnerability in the Stream Video Player plugin 1.4.0 for WordPress allows remote attackers to hijack the authentication of administrators for requests that change plugin settings via unspecified vectors.

Affected Software

4 affected components
Rodrigo Polo Stream Video Player=1.4.0
WordPress
All of the following
Rodrigo Polo Stream Video Player=1.4.0
WordPress

Event History

Apr 11, 2014
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Data Sourced
via NVD·02:55 PM
DescriptionSeverityWeaknessAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2013-2706?

CVE-2013-2706 is classified as a medium severity vulnerability due to its potential for cross-site request forgery attacks.

2

How do I fix CVE-2013-2706?

To remediate CVE-2013-2706, update the Stream Video Player plugin to a version that addresses the CSRF vulnerability.

3

What vulnerabilities does CVE-2013-2706 introduce?

CVE-2013-2706 allows attackers to hijack administrator authentication, enabling unauthorized changes to plugin settings.

4

Who is affected by CVE-2013-2706?

CVE-2013-2706 affects users of the Stream Video Player plugin version 1.4.0 for WordPress.

5

What type of attack is CVE-2013-2706 associated with?

CVE-2013-2706 is associated with cross-site request forgery (CSRF) attacks that exploit vulnerabilities in web applications.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203