Lucene search

K
wpvulndbWpvulndbWPVDB-ID:45E6EC6C-E80A-4338-A3C7-6C910F92D55B
HistoryJan 22, 2024 - 12:00 a.m.

SalesKing < 1.6.30 - Missing Authorization to Settings Change

2024-01-2200:00:00
wpscan.com
10
salesking
wordpress
vulnerability
unauthorized modification
data
capability check
unauthenticated attackers
plugin settings

AI Score

6.6

Confidence

Low

EPSS

0

Percentile

9.0%

Description The SalesKing plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check in all versions up to, and including, 1.6.15. This makes it possible for unauthenticated attackers to modify plugin settings.

AI Score

6.6

Confidence

Low

EPSS

0

Percentile

9.0%

Related for WPVDB-ID:45E6EC6C-E80A-4338-A3C7-6C910F92D55B