The Menu Item Visibility Control WordPress plugin through 0.5 doesn't sanitize and validate the "Visibility logic" option for WordPress menu items, which could allow highly privileged users to execute arbitrary PHP code even in a hardened environment.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/eaa28832-74c1-4cd5-9b0f-02338e23b418 | Exploit Third Party Advisory |
https://wpscan.com/vulnerability/eaa28832-74c1-4cd5-9b0f-02338e23b418 | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 05:54
Type | Values Removed | Values Added |
---|---|---|
References | () https://wpscan.com/vulnerability/eaa28832-74c1-4cd5-9b0f-02338e23b418 - Exploit, Third Party Advisory |
30 Jun 2023, 18:12
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-Other |
Information
Published : 2022-12-26 13:15
Updated : 2024-11-21 05:54
NVD link : CVE-2021-24942
Mitre link : CVE-2021-24942
CVE.ORG link : CVE-2021-24942
JSON object : View
Products Affected
menu_item_visibility_control_project
- menu_item_visibility_control
CWE