CVE-2018-20971: CSRF
Published Aug 16, 2019
·Updated
The church-admin plugin before 1.2550 for WordPress has CSRF affecting the upload of a bible reading plan.
Affected Software
1 affected component
Churchadminplugin Church Admin Wordpress<1.2550
Event History
Aug 16, 2019
CVE Published
via MITRE·08:21 PM
Data Sourced
via MITRE·08:21 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-20971?
CVE-2018-20971 has been classified as a medium severity vulnerability due to its potential impact on user data and functionality.
2
How do I fix CVE-2018-20971?
To fix CVE-2018-20971, update the church-admin plugin to version 1.2550 or later.
3
What impact does CVE-2018-20971 have on my WordPress site?
CVE-2018-20971 allows attackers to exploit CSRF vulnerabilities to upload unauthorized bible reading plans, which could compromise site integrity.
4
Which versions of the church-admin plugin are affected by CVE-2018-20971?
CVE-2018-20971 affects church-admin plugin versions before 1.2550.
5
How can I check if my WordPress site is vulnerable to CVE-2018-20971?
You can check if your site is vulnerable to CVE-2018-20971 by verifying the version of the church-admin plugin you have installed.