Input validation vulnerability in LadiApp: Landing Page, PopupX, Marketing Automation, Affiliate Marketing… 4.4

resulting in potential website defacement or data theft. The LadiApp plugin for WordPress has a security vulnerability that allows hackers to modify website settings and potentially deface the website or steal data. This is because the plugin does not have proper security measures in place to prevent unauthorized access. Attackers can exploit this vulnerability by tricking a site administrator into clicking on a link and then using a forged request to modify the ‘ladipage_key’, giving them the ability to create new posts and inject malicious code onto the website.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.