Unauthorized Access Vulnerability in Charitable Plugin for WordPress
CVE-2018-21011
7.5HIGH
Summary
The Charitable plugin for WordPress before version 1.5.14 contains a vulnerability that allows unauthorized users to gain access to sensitive user information and details related to donations. This security flaw could lead to potential data breaches, affecting the privacy and security of both individuals and organizations relying on this plugin for their charitable activities. It is crucial for users and site administrators to update their plugins to the latest version to mitigate this risk.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved