PT-2023-10287 · Meitar · Meitar Inline Google Spreadsheet Viewer Plugin

CVE-2015-10108

·

Publicado

2023-05-31

·

Atualizado

2024-05-17

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions meitar Inline Google Spreadsheet Viewer Plugin versions up to 0.9.6
Description A vulnerability was found in the meitar Inline Google Spreadsheet Viewer Plugin, which is classified as problematic. The issue affects the displayShortcode function of the file inline-gdocs-viewer.php. This leads to cross-site request forgery, and the attack can be launched remotely.
Recommendations For meitar Inline Google Spreadsheet Viewer Plugin versions up to 0.9.6, upgrade to version 0.9.6.1 to address this issue. As a temporary workaround, consider disabling the displayShortcode function of the inline-gdocs-viewer.php file until the patch is applied.

Correção

CSRF

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2015-10108

Produtos afetados

Meitar Inline Google Spreadsheet Viewer Plugin