Because of this vulnerability, the attackers can perform privileged actions as administrators, as demonstrated using the delete action in wp-admin/post.php.
Update the WordPress Admin Panel plugin to the latest version (at least 2.1.2).
CPE | Name | Operator | Version |
---|---|---|---|
admin panel | le | 2.1.1 |