The Muslim Prayer Time BD WordPress plugin through 2.4 does not have CSRF check in place when reseting its settings, which could allow attackers to make a logged in admin reset them via a CSRF attack
History

Mon, 19 May 2025 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Realwebcare
Realwebcare muslim Prayer Time Bd
Weaknesses CWE-352
CPEs cpe:2.3:a:realwebcare:muslim_prayer_time_bd:*:*:*:*:*:wordpress:*:*
Vendors & Products Realwebcare
Realwebcare muslim Prayer Time Bd

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2024-06-26T06:00:02.801Z

Updated: 2024-08-01T20:47:41.788Z

Reserved: 2024-05-10T14:55:35.937Z

Link: CVE-2024-4758

cve-icon Vulnrichment

Updated: 2024-08-01T20:47:41.788Z

cve-icon NVD

Status : Analyzed

Published: 2024-06-26T06:15:16.133

Modified: 2025-05-19T15:05:21.950

Link: CVE-2024-4758

cve-icon Redhat

No data.