Description
WordPress Plugin WP SEO Redirect 301 is prone to a cross-site request forgery vulnerability. Exploiting this issue may allow a remote attacker to perform certain administrative actions and gain unauthorized access to the affected application; other attacks are also possible. WordPress Plugin WP SEO Redirect 301 version 2.3.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.3.2 or latest
References
https://sploitus.com/exploit?id=WPEX-ID:CF031259-B76E-475C-8A8E-FA6A0D9E7BB4
https://plugins.svn.wordpress.org/wp-seo-redirect-301/trunk/readme.txt
Related Vulnerabilities
Oracle HTTP Server CVE-2019-2751 Vulnerability (CVE-2019-2751)
Serendipity Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-5475)
MySQL CVE-2016-0658 Vulnerability (CVE-2016-0658)
WordPress Plugin WP Courses LMS Security Bypass (2.0.28)
OpenSSL Resource Management Errors Vulnerability (CVE-2016-0798)