CVE Database /
CVE-2013-10027
CVE · High
CVE-2013-10027 — Blogger Importer [blogger-importer] < 0.6 (closed)
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2013-10027
|
Blogger Importer [blogger-importer] < 0.6 (closed) |
Cross-Site Request Forgery (CSRF) |
High
8.8
|
< 0.6
|
0.6 |
2013-10-08 |
—
|
CVE-2013-10027
The Blogger Importer plugin for WordPress versions up to 0.5 contains a cross-site request forgery vulnerability in the start and restart functions of the blogger-importer.php file. An attacker can exploit this flaw remotely by manipulating unspecified parameters. Users should upgrade to version 0.6 or later, which includes a fix identified by commit b83fa4f862b0f19a54cfee76060ec9c2e7f7ca70, to resolve this issue.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings