Input validation vulnerability in ServerBuddy by PluginBuddy.com 1.0.5

The ServerBuddy plugin for WordPress made by PluginBuddy.com has a security issue called Cross-Site Request Forgery. This affects all versions up to 1.0.5. The problem is that it doesn’t properly check for something called a nonce, which is important for security. This means that people who are not logged in can make changes to the website’s code if they can get the website administrator to click on a link.

Detected in:

ServerBuddy by PluginBuddy.com open vulnerable versions: >= * <= 1.0.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.