CVE-2019-25738 | framework-y Hybrid Composer 1.4.6 Setting admin-ajax.php hc_ajax_save_option missing authentication (Exploit 47154)
A vulnerability marked as critical has been reported in framework-y Hybrid Composer 1.4.6. Affected is the function hc_ajax_save_option of the file admin-ajax.php of the component Setting Handler. This manipulation causes missing authentication.
This vulnerability appears as CVE-2019-25738. The attack may be initiated remotely. In addition, an exploit is available.VulDB Recent EntriesRead More