Description
Cross-site request forgery (CSRF) vulnerability in WordPress before 4.7.1 allows remote attackers to hijack the authentication of unspecified victims via vectors involving a Flash file upload.
Remediation
References
Related Vulnerabilities
WordPress Plugin Gallery PhotoBlocks Cross-Site Scripting (1.1.42)
MySQL CVE-2012-1696 Vulnerability (CVE-2012-1696)
MediaWiki Other Vulnerability (CVE-2005-4031)
WordPress Plugin WP Ajax Recent Posts 'number' Parameter Cross-Site Scripting (1.0.1)
XWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-37914)