Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Admin_management_xtended
(Admin_management_xtended_project)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 3 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2022-06-15 | CVE-2022-29450 | Multiple Cross-Site Request Forgery (CSRF) vulnerabilities in Admin Management Xtended plugin <= 2.4.4 at WordPress. | Admin_management_xtended | 8.8 | ||
2022-07-11 | CVE-2022-1599 | The Admin Management Xtended WordPress plugin before 2.4.5 does not have CSRF checks in some of its AJAX actions, allowing attackers to make a logged users with the right capabilities to call them. This can lead to changes in post status (draft, published), slug, post date, comment status (enabled, disabled) and more. | Admin_management_xtended | 6.5 | ||
2019-09-20 | CVE-2015-9390 | The admin-management-xtended plugin before 2.4.0.1 for WordPress has privilege escalation because wp_ajax functions are mishandled. | Admin_management_xtended | N/A |