Improper Access Control in DiveBook Plugin for WordPress
CVE-2020-14205
5.3MEDIUM
What is CVE-2020-14205?
The DiveBook plugin version 1.1.4 for WordPress has a vulnerability due to insufficient authorization checks in the Log Dive form. This weakness can be exploited by an attacker to manipulate dive log data, leading to potential integrity issues in the logs that may affect users' diving records.