mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-02 07:51:39 +02:00
838 B
838 B
CVE-2021-24781
Description
The Image Source Control WordPress plugin before 2.3.1 allows users with a role as low as Contributor to change arbitrary post meta fields of arbitrary posts (even those they should not be able to edit)
POC
Reference
- https://wpscan.com/vulnerability/3550ba54-7786-4ad9-aeb1-1c0750f189d0
- https://wpscan.com/vulnerability/3550ba54-7786-4ad9-aeb1-1c0750f189d0
Github
No PoCs found on GitHub currently.