The Popup Box WordPress plugin before 2.2.7 does not have CSRF checks in some bulk actions, which could allow attackers to make logged in admins perform unwanted actions, such as deleting popups via CSRF attacks
Metrics
Affected Vendors & Products
References
History
Thu, 08 May 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Wow-company
Wow-company popup Box |
|
CPEs | cpe:2.3:a:wow-company:popup_box:*:*:*:*:*:wordpress:*:* | |
Vendors & Products |
Wow-company
Wow-company popup Box |
Tue, 25 Mar 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: WPScan
Published: 2024-05-02T06:00:03.299Z
Updated: 2025-03-25T15:41:36.311Z
Reserved: 2024-04-08T18:33:20.867Z
Link: CVE-2024-3477

Updated: 2024-08-01T20:12:07.199Z

Status : Analyzed
Published: 2024-05-02T06:15:50.950
Modified: 2025-05-08T17:55:13.250
Link: CVE-2024-3477

No data.