First published: Tue Aug 20 2019(Updated: )
The wp-all-import plugin before 3.2.4 for WordPress has no prevention of unauthenticated requests to adminInit.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Soflyy Wp All Import | <3.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2015-9331.
The severity of CVE-2015-9331 is high.
The affected software for CVE-2015-9331 is the wp-all-import plugin before version 3.2.4 for WordPress.
The description of CVE-2015-9331 is that the wp-all-import plugin before version 3.2.4 for WordPress has no prevention of unauthenticated requests to adminInit.
To fix CVE-2015-9331, you should update the wp-all-import plugin to version 3.2.4 or higher.