CVE-2012-10017

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Dec 26, 2023
Updated: May 17, 2024
CWE ID 352

Summary

CVE-2012-10017 is a vulnerability affecting the BestWebSoft Portfolio Plugin up to version 2.04 on WordPress. This issue is classified as problematic and involves an unknown part of the plugin. A cross-site request forgery (CSRF) is the potential consequence, allowing an attacker to initiate the attack remotely. To mitigate this risk, it is recommended to upgrade to version 2.06, which includes the patch with the identifier 68af950330c3202a706f0ae9bbb52ceaa17dda9d. The patch has already been released, and it is strongly advised to apply the update to ensure the security of WordPress installations using the BestWebSoft Portfolio Plugin.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share