The PostX – Gutenberg Blocks for Post Grid WordPress plugin before 2.4.10 performs incorrect checks before allowing any logged in user to perform some ajax based requests, allowing any user to modify, delete or add ultp_options values.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/5375bd3e-a30d-4f24-9b17-470b28a8231c | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: WPScan
Published: 2021-09-27T15:25:30
Updated: 2021-09-27T15:25:30
Reserved: 2021-01-14T00:00:00
Link: CVE-2021-24652
JSON object: View
NVD Information
Status : Modified
Published: 2021-09-27T16:15:08.900
Modified: 2023-11-07T03:31:18.740
Link: CVE-2021-24652
JSON object: View
Redhat Information
No data.
CWE