PT-2019-9356 · Wpforo · Wpforo Forum
Publicado
2019-06-19
·
Atualizado
2020-08-24
·
CVE-2018-16613
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
wpForo Forum plugin versions prior to 1.5.2
Description
A privilege escalation issue was discovered in the update function of the wpForo Forum plugin. This allows a registered forum user to escalate their privileges to those of a forum administrator without requiring any user interaction.
Recommendations
For versions prior to 1.5.2, update to version 1.5.2 or later to resolve the issue.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Wpforo Forum