Lucene search

K
wpvulndbWpvulndbWPVDB-ID:E39B5074-8B68-466A-9663-EF492F55765A
HistoryDec 08, 2023 - 12:00 a.m.

JetEngine < 3.2.5 - Missing Authorization

2023-12-0800:00:00
wpscan.com
16
jetengine
wordpress
vulnerable
unauthorized access
capability check

6.7 Medium

AI Score

Confidence

Low

0 Low

EPSS

Percentile

0.0%

Description The JetEngine plugin for WordPress is vulnerable to unauthorized access due to a missing capability check in versions up to, and including, 3.2.4. This makes it possible for authenticated attackers, with subscriber-level access and above, to perform an unauthorized action.

CPENameOperatorVersion
eq3.2.5

6.7 Medium

AI Score

Confidence

Low

0 Low

EPSS

Percentile

0.0%

Related for WPVDB-ID:E39B5074-8B68-466A-9663-EF492F55765A