8.8
CVSSv3

CVE-2021-24289

Published: 17/05/2021 Updated: 24/05/2021
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

There is functionality in the Store Locator Plus for WordPress plugin up to and including 5.5.14 that made it possible for authenticated users to update their user meta data to become an administrator on any site using the plugin.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

de-baat store locator plus