Input validation vulnerability in Who Hit The Page – Hit Counter 1.4.14.3

The Who Hit The Page – Hit Counter plugin for WordPress is vulnerable to a type of attack called Cross-Site Request Forgery. This affects the versions of the plugin up to and including version 1.4.14.3. The issue is caused by an incorrect or missing security measure on an unknown function, which could allow an unauthenticated attacker to make a website administrator perform an unknown action, such as clicking a link. Unfortunately, it is not known what impact this vulnerability could have.

Detected in:

Who Hit The Page – Hit Counter open vulnerable versions: >= * <= 1.4.14.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.