WordPress 3.3.1 Multiple CSRF Vulnerabilities
Wordpress 3.3.1 suffers from multiple CSRF vulnerabilities which allow an attacker to change post title, add administrators/users, delete administrators/users, approve and unapprove comment, delete comment, change background image, insert custom header image, change site title, change administrator's email, change Wordpress Address, change Site Address, when an authenticated user/admin browses a special crafted web page. May be other parameters can be modified. This vulnerability is caused by a security flaw in anti-CSRF token (_wpnonce, _wpnonce_create-user, _ajax_nonce, _wpnonce-custom-header-upload, _wpnonce-custom-background-upload, _wpnonce-update-blogoptions, _wpnonce-update-comment_status, _wpnonce-delete-comment, _wpnonce-delete-user, _wpnonce-delete-tag, _wpnonce-add-tag) implementation.