The Side Menu Lite WordPress plugin before 4.2.1 does not have CSRF checks in some bulk actions, which could allow attackers to make logged in admins perform unwanted actions, such as deleting buttons via CSRF attacks
Metrics
Affected Vendors & Products
References
History
Thu, 08 May 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-352 | |
CPEs | cpe:2.3:a:wow-company:side_menu_lite:*:*:*:*:*:wordpress:*:* |

Status: PUBLISHED
Assigner: WPScan
Published: 2024-05-02T06:00:03.114Z
Updated: 2024-08-02T13:39:35.587Z
Reserved: 2024-04-08T18:32:14.064Z
Link: CVE-2024-3476

Updated: 2024-08-02T13:39:25.384Z

Status : Analyzed
Published: 2024-05-02T06:15:50.887
Modified: 2025-05-08T17:53:18.257
Link: CVE-2024-3476

No data.