Input validation vulnerability in WP Forum Server 1.7.3

The WP Forum Server plugin for WordPress is not secure in versions up to and including 1.7.3. Attackers with administrative capabilities can insert malicious code into web pages which can be run when someone visits those pages. People without proper authorization can also exploit this vulnerability through a process called Cross-Site Request Forgery (CSRF). This could result in unanticipated and potentially damaging results.

Detected in:

WP Forum Server open vulnerable versions: >= * <= 1.7.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.