CVE-2016-10902: CSRF
Published Aug 21, 2019
·Updated
The wp-customer-reviews plugin before 3.0.9 for WordPress has CSRF in the admin tools.
Affected Software
1 affected component
Gowebsolutions Wp Customer Reviews Wordpress<3.0.9
Event History
Aug 21, 2019
CVE Published
via MITRE·12:45 PM
Data Sourced
via MITRE·12:45 PM
Description
Frequently Asked Questions
1
What is CVE-2016-10902?
CVE-2016-10902 is a vulnerability in the wp-customer-reviews plugin before 3.0.9 for WordPress, which allows CSRF attacks in the admin tools.
2
How severe is CVE-2016-10902?
CVE-2016-10902 has a severity rating of 8.8, which is classified as high.
3
What software is affected by CVE-2016-10902?
The wp-customer-reviews plugin before version 3.0.9 for WordPress is affected by CVE-2016-10902.
4
How do I fix CVE-2016-10902?
To fix CVE-2016-10902, update the wp-customer-reviews plugin to version 3.0.9 or later.
5
Where can I find more information about CVE-2016-10902?
More information about CVE-2016-10902 can be found at the following reference: https://wordpress.org/plugins/wp-customer-reviews/#developers