WordPress Plugin Vulnerabilities
Adapta RGPD < 1.3.3 - Unauthorised Consent via CSRF
Description
The accept_cookie_consent AJAX action did not properly check for CSRF, allowing attackers to make users consent via a CSRF attack.
Proof of Concept
Affects Plugins
Classification
Type
CSRF
OWASP top 10
CWE
CVSS
Miscellaneous
Original Researcher
WPSanTeam
Verified
Yes
WPVDB ID
Timeline
Publicly Published
2021-06-30 (about 4 years ago)
Added
2021-06-30 (about 4 years ago)
Last Updated
2021-06-30 (about 4 years ago)