CVE-2017-9064
In WordPress before 4.7.5, a Cross Site Request Forgery (CSRF) vulnerability exists in the filesystem credentials dialog
In WordPress before 4.7.5, a Cross Site Request Forgery (CSRF) vulnerability exists in the filesystem credentials dialog because a nonce is not required for updating credentials.
HIGH · CVSS 8.8
EPSS 0.01257
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0