Description
Missing Authorization vulnerability in ThemeMove Makeaholic allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Makeaholic: from n/a through 1.8.5.
Problem types
Product status
Any version
Credits
Tran Nguyen Bao Khanh | VCI - VNPT Cyber Immunity (Patchstack Bug Bounty program)
References
patchstack.com/...ken-access-control-vulnerability?_s_id=cve