NA

CVE-2023-0820

Published: 03/04/2023 Updated: 07/11/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The User Role by BestWebSoft WordPress plugin prior to 1.6.7 does not protect against CSRF in requests to update role capabilities, leading to arbitrary privilege escalation of any role.

Vulnerable Product Search on Vulmon Subscribe to Product

bestwebsoft user role