Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
ActiveCampaign < 8.0.2 - Cross-Site Request Forgery in Settings
Vulnerability Description
Lack of CSRF checks in the ActiveCampaign WordPress plugin, versions before 8.0.2, on its Settings form, which could allow attacker to make a logged-in administrator change API Credentials to attacker's account.
CVSS Information
N/A
Vulnerability Type
跨站请求伪造(CSRF)
Vulnerability Title
Wordpress ActiveCampaign 跨站请求伪造漏洞
Vulnerability Description
Wordpress ActiveCampaign是 (Wordpress)开源的一个应用插件。提供一个自动化功能。 WordPress ActiveCampaign plugin, versions before 8.0.2 存在跨站请求伪造漏洞,该漏洞源于缺少CSRF检查,攻击者可利用该漏洞让登录管理员更改攻击者可利用该漏洞帐户的API凭证。
CVSS Information
N/A
Vulnerability Type
N/A