CVE-2013-2710: XSS
Cross-site request forgery (CSRF) vulnerability in the Contextual Related Posts plugin before 1.8.7 for WordPress allows remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2013-2710?
CVE-2013-2710 is classified as a medium severity vulnerability due to its potential impact on WordPress administrator accounts.
How do I fix CVE-2013-2710?
To fix CVE-2013-2710, update the Contextual Related Posts plugin to version 1.8.7 or later.
Who is affected by CVE-2013-2710?
CVE-2013-2710 affects users of the Contextual Related Posts plugin versions before 1.8.7 on WordPress sites.
What type of vulnerability is CVE-2013-2710?
CVE-2013-2710 is a cross-site request forgery (CSRF) vulnerability.
What can attackers do with CVE-2013-2710?
Attackers exploiting CVE-2013-2710 can hijack the authentication of administrators to perform unauthorized actions, potentially leading to cross-site scripting (XSS) attacks.