CVE-2017-18607: CSRF
Published Sep 10, 2019
·Updated
The avada theme before 5.1.5 for WordPress has CSRF.
Affected Software
1 affected component
Theme-fusion Avada Wordpress<5.1.5
Event History
Sep 10, 2019
CVE Published
via MITRE·11:18 AM
Data Sourced
via MITRE·11:18 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-18607?
CVE-2017-18607 has a medium severity rating due to its CSRF vulnerability in the Avada theme.
2
How do I fix CVE-2017-18607?
To fix CVE-2017-18607, update the Avada theme to version 5.1.5 or later.
3
Which versions of the Avada theme are affected by CVE-2017-18607?
Avada theme versions before 5.1.5 are affected by CVE-2017-18607.
4
What type of vulnerability is CVE-2017-18607?
CVE-2017-18607 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
5
Who is the vendor for the Avada theme related to CVE-2017-18607?
The vendor for the Avada theme affected by CVE-2017-18607 is Theme Fusion.