A vulnerability classified as problematic has been found in Atahualpa Theme. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely.
The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.
Link | Tags |
---|---|
http://seclists.org/fulldisclosure/2017/Feb/90 | mailing list exploit third party advisory |
https://vuldb.com/?id.97380 | permissions required vdb entry third party advisory |