CVE-2022-1694

Publication date

2022-06-13 12:42:25

Family

WPScan

State

PUBLISHED

Description

The Useful Banner Manager WordPress plugin through 1.6.1 does not perform CSRF checks on POST requests to its admin page, allowing an attacker to trick a logged in admin to add, modify or delete banners from the plugin by submitting a form.