CVE-2020-6167

Publication date

2020-01-09 18:09:46

Family

mitre

State

PUBLISHED

Description

A flaw in the WordPress plugin, Minimal Coming Soon & Maintenance Mode through 2.10, allows a CSRF attack to enable maintenance mode, inject XSS, modify several important settings, or include remote files as a logo.