DEV Institute “Restrict User Access – Membership” 插件中存在缺失授权(Missing Authorization)漏洞,该漏洞可被利用于强制限制用户访问(Force restrict-user-access)功能,从而导致对不正确配置的访问控制安全级别的利用。此问题影响 “Restrict User Access – Membership” 插件(Force 版本),受影响版本范围为从 n/a 到 2.8.1(含)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| DEV Institute | Restrict User Access – Membership Plugin with Force | 0 ~ 2.8.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet