CVE-2017-18513: CSRF
Published Aug 14, 2019
·Updated
The responsive-menu plugin before 3.1.4 for WordPress has no CSRF protection mechanism for the admin interface.
Affected Software
1 affected component
ExpressTech Responsive Menu Wordpress<3.1.4
Event History
Aug 14, 2019
CVE Published
via MITRE·03:31 PM
Data Sourced
via MITRE·03:31 PM
Description
Frequently Asked Questions
1
What is the vulnerability CVE-2017-18513?
The vulnerability CVE-2017-18513 refers to a lack of CSRF protection mechanism in the responsive-menu plugin before version 3.1.4 for WordPress admin interface.
2
How severe is CVE-2017-18513?
CVE-2017-18513 has a severity rating of high, with a CVSS score of 8.8.
3
Which software versions are affected by CVE-2017-18513?
The vulnerable version of the responsive-menu plugin for WordPress is version up to, but not including, 3.1.4.
4
Is there a patch or fix available for CVE-2017-18513?
Yes, updating the responsive-menu plugin to version 3.1.4 or later will fix the vulnerability.
5
Where can I find more information about CVE-2017-18513?
More information about CVE-2017-18513 can be found on the WordPress plugin page for responsive-menu: https://wordpress.org/plugins/responsive-menu/#developers