Input validation vulnerability in ECT Social Share 1.3

The ECT Social Share plugin for WordPress has a security issue that makes it vulnerable to a type of cyber attack called Cross-Site Request Forgery. This can happen in any version, including the most recent one, 1.3. The problem is caused by a function that doesn’t properly check for a security code. This allows hackers who are not logged in to make changes to the plugin’s settings and add harmful codes to the website. They can do this by tricking the site administrator into clicking on a link.

Detected in:

ECT Social Share open vulnerable versions: >= * <= 1.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.