WordPress Plugin Wordfence Security-Firewall Malware Scan Multiple Vulnerabilities - Vulnerability Database

WordPress Plugin Wordfence Security-Firewall Malware Scan Multiple Vulnerabilities

Medium
Reference: No Reference
Title: WordPress Plugin Wordfence Security-Firewall Malware Scan Multiple Vulnerabilities
Overview:

WordPress Plugin Wordfence Security-Firewall Malware Scan is prone to multiple vulnerabilities including cross-site scripting and security bypass vulnerabilities. Exploiting these issues could allow an attacker to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site to steal cookie-based authentication credentials or to perform otherwise restricted actions and subsequently bypass author enumeration prevention by using invalid parameters. WordPress Plugin Wordfence Security-Firewall Malware Scan version 7.1.12 is vulnerable prior versions may also be affected.