CVE

Id
60683  
CVE No.
CVE-2013-0736  
Status
Candidate  
Description
Multiple cross-site request forgery (CSRF) vulnerabilities in the Mingle Forum plugin 1.0.34 and possibly earlier for WordPress allow remote attackers to hijack the authentication of administrators for requests that (1) modify user privileges or (2) conduct cross-site scripting (XSS) attacks via unspecified vectors.  
Phase
Assigned (20130102)  
Votes
None (candidate not yet proposed)  
Comments