CVE-2021-20781: CSRF
Published Jul 14, 2021
·Updated
Cross-site request forgery (CSRF) vulnerability in WordPress Meta Data Filter & Taxonomies Filter versions prior to v.1.2.8 and versions prior to v.2.2.8 allows remote attackers to hijack the authentication of administrators via unspecified vectors.
Affected Software
2 affected components
Pluginus Wordpress Meta Data And Taxonomies Filter Wordpress<1.2.8
Pluginus Wordpress Meta Data And Taxonomies Filter Wordpress>=2.2.2<2.2.8
Event History
Jul 14, 2021
CVE Published
via MITRE·01:20 AM
Data Sourced
via MITRE·01:20 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-20781.
2
What is the severity of CVE-2021-20781?
The severity of CVE-2021-20781 is high, with a severity value of 8.8.
3
What is the affected software?
The affected software is Pluginus Wordpress Meta Data and Taxonomies Filter versions prior to v.1.2.8 and versions prior to v.2.2.8.
4
How can the vulnerability be exploited?
The vulnerability can be exploited through Cross-Site Request Forgery (CSRF) attacks.
5
Are there any fixes for this vulnerability?
Yes, there are fixes available by updating to Wordpress Meta Data and Taxonomies Filter versions v.1.2.8 and v.2.2.8 respectively.