CVE · High

CVE-2013-10027 — Blogger Importer [blogger-importer] < 0.6 (closed)

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2013-10027 Blogger Importer [blogger-importer] < 0.6 (closed) Cross-Site Request Forgery (CSRF) High 8.8 < 0.6 0.6 2013-10-08

CVE-2013-10027

The Blogger Importer plugin for WordPress versions up to 0.5 contains a cross-site request forgery vulnerability in the start and restart functions of the blogger-importer.php file. An attacker can exploit this flaw remotely by manipulating unspecified parameters. Users should upgrade to version 0.6 or later, which includes a fix identified by commit b83fa4f862b0f19a54cfee76060ec9c2e7f7ca70, to resolve this issue.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.