Vulnerability Description
admin/includes/class.actions.snippet.php in the "Woody ad snippets" plugin through 2.2.5 for WordPress allows wp-admin/admin-post.php?action=close&post= deletion.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Webcraftic | Woody Ad Snippets | <= 2.2.5 |
References
- https://wordpress.org/plugins/insert-php/#developersThird Party Advisory
- https://www.pluginvulnerabilities.com/2019/08/01/post-deletion-vulnerability-in-ExploitThird Party Advisory
- https://wordpress.org/plugins/insert-php/#developersThird Party Advisory
- https://www.pluginvulnerabilities.com/2019/08/01/post-deletion-vulnerability-in-ExploitThird Party Advisory
FAQ
What is CVE-2019-14773?
CVE-2019-14773 is a vulnerability with a CVSS score of 7.5 (HIGH). admin/includes/class.actions.snippet.php in the "Woody ad snippets" plugin through 2.2.5 for WordPress allows wp-admin/admin-post.php?action=close&post= deletion.
How severe is CVE-2019-14773?
CVE-2019-14773 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-14773?
Check the references section above for vendor advisories and patch information. Affected products include: Webcraftic Woody Ad Snippets.