The Counter Box WordPress plugin before 1.2.4 does not have CSRF checks in some bulk actions, which could allow attackers to make logged in admins perform unwanted actions, such deleting counters via CSRF attacks
Metrics
Affected Vendors & Products
References
History
Thu, 08 May 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Wow-company
Wow-company counter Box |
|
Weaknesses | CWE-352 | |
CPEs | cpe:2.3:a:wow-company:counter_box:*:*:*:*:*:wordpress:*:* | |
Vendors & Products |
Wow-company
Wow-company counter Box |

Status: PUBLISHED
Assigner: WPScan
Published: 2024-05-02T06:00:03.662Z
Updated: 2024-08-01T20:12:07.376Z
Reserved: 2024-04-08T18:35:36.408Z
Link: CVE-2024-3481

Updated: 2024-08-01T20:12:07.376Z

Status : Analyzed
Published: 2024-05-02T06:15:51.130
Modified: 2025-05-08T17:55:48.857
Link: CVE-2024-3481

No data.