Beveiligingsadvies

CVE-2023-0820

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-04-03 14:38:25
Laatst bijgewerkt 2025-02-14 16:53:04
Toegewezen door WPScan
CVSS-score 8.8
Status PUBLISHED

Beschrijving

The User Role by BestWebSoft WordPress plugin before 1.6.7 does not protect against CSRF in requests to update role capabilities, leading to arbitrary privilege escalation of any role.