Security Advisory
CVE-2013-2705
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Cross-site request forgery (CSRF) vulnerability in the WordPress Simple Paypal Shopping Cart plugin before 3.6 for WordPress allows remote attackers to hijack the authentication of administrators for requests that change plugin settings.