CVE-2019-19109: CSRF
Published Jun 15, 2020
·Updated
The wpForo plugin 1.6.5 for WordPress allows wp-admin/admin.php?page=wpforo-usergroups CSRF.
Affected Software
1 affected component
gVectors Wpforo Wordpress=1.6.5
Event History
Jun 15, 2020
CVE Published
via MITRE·01:10 PM
Data Sourced
via MITRE·01:10 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-19109.
2
What is the severity of CVE-2019-19109?
CVE-2019-19109 has a severity keyword of 'high' and a severity value of 8.8.
3
What is the affected software of CVE-2019-19109?
The affected software for CVE-2019-19109 is the wpForo plugin version 1.6.5 for WordPress.
4
What is the description of CVE-2019-19109?
CVE-2019-19109 is a Cross-Site Request Forgery (CSRF) vulnerability in the wpForo plugin 1.6.5 for WordPress.
5
How can I fix CVE-2019-19109?
To fix CVE-2019-19109, update the wpForo plugin to a version that has addressed this vulnerability.