Vulnerabilities > Acnam

DATE CVE VULNERABILITY TITLE RISK
2022-05-02 CVE-2022-0191 Cross-Site Request Forgery (CSRF) vulnerability in Acnam AD Invalid Click Protector
The Ad Invalid Click Protector (AICP) WordPress plugin before 1.2.7 does not have CSRF check deleting banned users, which could allow attackers to make a logged in admin remove arbitrary bans
network
acnam CWE-352
4.3
2022-02-14 CVE-2022-0190 SQL Injection vulnerability in Acnam AD Invalid Click Protector
The Ad Invalid Click Protector (AICP) WordPress plugin before 1.2.6 is affected by a SQL Injection in the id parameter of the delete action.
network
low complexity
acnam CWE-89
6.5