漏洞标题
WordPress Ultimate Store Kit Elementor Addons插件 <= 2.3.0存在访问控制缺陷漏洞
漏洞描述信息
BdThemes Ultimate Store Kit Elementor 插件存在授权验证不足的漏洞,允许攻击者利用配置不当的访问控制安全级别进行攻击。该问题影响 Ultimate Store Kit Elementor 插件版本:n/a 至 2.3.0。
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N
漏洞类别
授权机制缺失
漏洞标题
WordPress Ultimate Store Kit Elementor Addons plugin <= 2.3.0 - Broken Access Control vulnerability
漏洞描述信息
Missing Authorization vulnerability in BdThemes Ultimate Store Kit Elementor Addons allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Ultimate Store Kit Elementor Addons: from n/a through 2.3.0.
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
漏洞类别
授权机制缺失