CVE-2024-4758

Publication date

2024-06-26 06:00:02

Family

WPScan

State

PUBLISHED

Description

The Muslim Prayer Time BD WordPress plugin through 2.4 does not have CSRF check in place when reseting its settings, which could allow attackers to make a logged in admin reset them via a CSRF attack