Home
MEDIUM: 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NDefault status
unaffected
Any version
affected
Description
Missing Authorization vulnerability in Prasad Kirpekar WP Meta and Date Remover allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WP Meta and Date Remover: from n/a through 2.3.6.
Problem types
Product status
Any version
Credits
Trương Hữu Phúc (truonghuuphuc) | Patchstack Bug Bounty Program
References
patchstack.com/...ken-access-control-vulnerability?_s_id=cve