ThreatPress

WordPress Vulnerabilities Database

Back

WordPress DELUCKS SEO plugin <= 2.1.7 - Unauthenticated Options Update vulnerability

Product
DELUCKS SEO
Description
Unauthenticated Options Update vulnerability found in WordPress DELUCKS SEO plugin (versions <= 2.1.7).
Solution
This plugin has been closed as of September 22, 2019 and is not available for download. This closure is temporary, pending a full review.
Classification
Type BYPASS
OWASP Top 10 A2: Broken Authentication and Session Management
References
Plugin changelog
CVE
Name CVE-N/A
Versions
Affected In <= 2.1.7
Disclosure date
2019-09-25
Submitter
ThreatPress