← Back

CVE-2014-5196

nvd nist
Published: Aug 12, 2014Modified: May 6, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:P/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

Cross-site request forgery (CSRF) vulnerability in improved-user-search-in-backend.php in the backend in the Improved user search in backend plugin before 1.2.5 for WordPress allows remote attackers to hijack the authentication of administrators for requests that insert XSS sequences via the iusib_meta_fields parameter.

Affected (1)

Improved User Search In Backend
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 1.2.4

Timeline

No history available yet.