CVE Database /
CVE-2021-24161
CVE · High
CVE-2021-24161 — Responsive Menu – Create Mobile-Friendly Menu [responsive-menu] < 4.0.4
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2021-24161
|
Responsive Menu – Create Mobile-Friendly Menu [responsive-menu] < 4.0.4 |
Cross-Site Request Forgery (CSRF) |
High
8.8
|
< 4.0.4
|
4.0.4 |
2021-02-10 |
—
|
CVE-2021-24161
The Responsive Menu WordPress plugin versions before 4.0.4 contained a vulnerability allowing attackers to deceive administrators into uploading a malicious zip file. Once uploaded, an attacker could access the PHP files within the archive to execute arbitrary code and compromise the website. This flaw affected both the free and Pro versions of the plugin.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings