Input validation vulnerability in Login Screen Manager 3.5.2

The Login Screen Manager plugin for WordPress has a security issue that affects all versions up to 3.5.2. This is because it does not properly check for a security code when using the cwlsm_options_page() function. This means that people who are not logged in can make changes to the plugin’s settings and add harmful code to the website if they can trick the website administrator into clicking on a link.

Detected in:

Login Screen Manager open vulnerable versions: >= * <= 3.5.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.