The admin-management-xtended plugin before 2.4.0.1 for WordPress has privilege escalation because wp_ajax functions are mishandled.
References
Link | Resource |
---|---|
https://security.szurek.pl/admin-management-xtended-240-privilege-escalation.html | Exploit Third Party Advisory |
https://wordpress.org/plugins/admin-management-xtended/#developers | Release Notes Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2019-09-20 08:15
Updated : 2019-09-23 10:19
NVD link : CVE-2015-9390
Mitre link : CVE-2015-9390
JSON object : View
CWE
CWE-269
Improper Privilege Management
Products Affected
admin_management_xtended_project
- admin_management_xtended