CVE-2018-15876

An issue was discovered in the ajax-bootmodal-login plugin 1.4.3 for WordPress. The register form, login form, and password-recovery form require solving a CAPTCHA to perform actions. However, this is required only once per user session, and therefore one could send as many requests as one wished by automation.
References
Configurations

Configuration 1

cpe:2.3:a:ajax_bootmodal_login_project:ajax_bootmodal_login:1.4.3:*:*:*:*:*:*:*

Information

Published : 2018-08-26 07:29

Updated : 2018-10-17 10:08


NVD link : CVE-2018-15876

Mitre link : CVE-2018-15876

Products Affected
No products.
CWE