The WP Post Page Clone WordPress plugin before 1.2 allows users with a role as low as Contributor to clone and view other users' draft and password-protected posts which they cannot view normally.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/a7fa5896-5a1d-44c6-985c-e4abcc53da0e | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2022-01-24 00:15
Updated : 2022-02-04 07:46
NVD link : CVE-2021-24733
Mitre link : CVE-2021-24733
JSON object : View
CWE
CWE-863
Incorrect Authorization
Products Affected
wp_post_page_clone_project
- wp_post_page_clone