Skip to content

CVE-2014-2340

Cross-site request forgery (CSRF) vulnerability in the XCloner plugin before 3.1.1 for WordPress allows remote attackers to hijack the authentication of administrators for requests that create website backups via a request to wp-admin/plugins.php.

Ver en NVD

Severidad

N/A

EPSS

Probabilidad de explotación (próx. 30 días): 0.0144 (1.4%)
Percentil: 80.8%
EPSS: 2026-05-06

Afecta

xcloner:xcloner

Descripción técnica

Cross-site request forgery (CSRF) vulnerability in the XCloner plugin before 3.1.1 for WordPress allows remote attackers to hijack the authentication of administrators for requests that create website backups via a request to wp-admin/plugins.php.

Publicada: 3/4/2014, 16:15:44
Última modificación: 6/5/2026, 22:30:45

Referencias

InicioEventosBlogRecursosEquipo