CVE-2014-5196: Improved User Search In Backend Project Improved User Search In Backend
Medium severity, CVSS 4.3. EPSS: 2.1% chance of exploitation in the next 30 days.
Cross-site request forgery (CSRF) vulnerability in improved-user-search-in-backend.php in the backend in the Improved user search in backend plugin before 1.2.5 for WordPress allows remote attackers to hijack the authentication of administrators for requests that insert XSS sequences via the iusib_meta_fields parameter.
Affected products
- Improved User Search In Backend Project Improved User Search In Backend: up to and including 1.2.4
Published 2014-08-12. Last modified 2026-06-17.