漏洞标题
Ability, Inc所编写的WordPress Accessibility Suite插件 <= 4.16 多处存在访问控制缺陷漏洞
漏洞描述信息
在Ability, Inc的Accessibility Suite(在线ADA无障碍套件)中存在授权验证缺失漏洞,允许攻击者利用配置不当的访问控制安全级别进行攻击。此问题影响在线ADA的Accessibility Suite版本从n/a到4.16。
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N
漏洞类别
授权机制缺失
漏洞标题
WordPress Accessibility Suite by Ability, Inc plugin <= 4.16 - Multiple Broken Access Control vulnerability
漏洞描述信息
Missing Authorization vulnerability in Ability, Inc Accessibility Suite by Online ADA allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Accessibility Suite by Online ADA: from n/a through 4.16.
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
漏洞类别
授权机制缺失