Description
The HM Multiple Roles WordPress plugin before 1.3 does not have any access control to prevent low privilege users to set themselves as admin via their profile page
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-11514 | The HM Multiple Roles WordPress plugin before 1.3 does not have any access control to prevent low privilege users to set themselves as admin via their profile page |
References
History
No history.
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-08-03T19:35:20.273Z
Reserved: 2021-01-14T00:00:00.000Z
Link: CVE-2021-24602
No data.
Status : Modified
Published: 2021-08-23T12:15:10.470
Modified: 2024-11-21T05:53:23.407
Link: CVE-2021-24602
No data.
OpenCVE Enrichment
No data.
EUVD