The Side Menu Lite  WordPress plugin before 4.2.1 does not have CSRF checks in some bulk actions, which could allow attackers to make logged in admins perform unwanted actions, such as deleting buttons via CSRF attacks
                
            Metrics
Affected Vendors & Products
References
        History
                    Thu, 08 May 2025 18:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-352 | |
| CPEs | cpe:2.3:a:wow-company:side_menu_lite:*:*:*:*:*:wordpress:*:* | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: WPScan
Published: 2024-05-02T06:00:03.114Z
Updated: 2024-08-02T13:39:35.587Z
Reserved: 2024-04-08T18:32:14.064Z
Link: CVE-2024-3476
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-02T13:39:25.384Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2024-05-02T06:15:50.887
Modified: 2025-05-08T17:53:18.257
Link: CVE-2024-3476
 Redhat
                        Redhat
                    No data.