- Description
 - Cross-Site Request Forgery (CSRF) vulnerability in cmstactics WP Video Posts allows OS Command Injection. This issue affects WP Video Posts: from n/a through 3.5.1.
 - Source
 - audit@patchstack.com
 - NVD status
 - Received
 
CVSS 3.1
- Type
 - Secondary
 - Base score
 - 8.3
 - Impact score
 - 6
 - Exploitability score
 - 1.6
 - Vector string
 - CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
 - Severity
 - HIGH
 
- audit@patchstack.com
 - CWE-352
 
- Hype score
 - Not currently trending
 
CVE-2025-27298 (CVSS:8.3, HIGH) is Awaiting Analysis. Cross-Site Request Forgery (CSRF) vulnerability in cmstactics WP Video Posts allows OS Command Injection. This issue aff..https://t.co/x6nPPZOJId #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre
@cracbot
1 Mar 2025
6 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-27298 Cross-Site Request Forgery (CSRF) vulnerability in cmstactics WP Video Posts allows OS Command Injection. This issue affects WP Video Posts: from n/a through 3.5.1. https://t.co/lNVCZAkSr3
@CVEnew
24 Feb 2025
300 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[CVE-2025-27298: HIGH] Cross-Site Request Forgery (CSRF) vulnerability in cmstactics WP Video Posts allows OS Command Injection. This issue affects WP Video Posts: from n/a through 3.5.1.#cybersecurity,#vulnerability https://t.co/EFVii8RBTu https://t.co/URxqD192Ii
@CveFindCom
24 Feb 2025
29 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes