CVE · Medium

CVE-2022-1694 — Useful Banner Manager [useful-banner-manager] <= 1.6.1 (unfixed + closed)

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2022-1694 Useful Banner Manager [useful-banner-manager] <= 1.6.1 (unfixed + closed) Cross-Site Request Forgery (CSRF) Medium 6.5 < 1.6.1 1.6.1 2022-05-17

CVE-2022-1694

The Useful Banner Manager plugin through version 1.6.1 contains a cross-site request forgery flaw that permits attackers to modify banners without authorization. This vulnerability was identified by Daniel Ruf and affects all versions up to and including 1.6.1, with no fix released. The plugin was closed on May 12, 2022 and removed from availability pending a comprehensive security review, making it unavailable for new installations or updates.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.