CVE-2013-2706: CSRF
Cross-site request forgery (CSRF) vulnerability in the Stream Video Player plugin 1.4.0 for WordPress allows remote attackers to hijack the authentication of administrators for requests that change plugin settings via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-2706?
CVE-2013-2706 is classified as a medium severity vulnerability due to its potential for cross-site request forgery attacks.
How do I fix CVE-2013-2706?
To remediate CVE-2013-2706, update the Stream Video Player plugin to a version that addresses the CSRF vulnerability.
What vulnerabilities does CVE-2013-2706 introduce?
CVE-2013-2706 allows attackers to hijack administrator authentication, enabling unauthorized changes to plugin settings.
Who is affected by CVE-2013-2706?
CVE-2013-2706 affects users of the Stream Video Player plugin version 1.4.0 for WordPress.
What type of attack is CVE-2013-2706 associated with?
CVE-2013-2706 is associated with cross-site request forgery (CSRF) attacks that exploit vulnerabilities in web applications.