ThreatPress

WordPress Vulnerabilities Database

Back

WordPress Slick Popup plugin <= 1.7.1 - Privilege Escalation vulnerability

Product
Slick Popup
Description
Privilege Escalation vulnerability found by WordFence in WordPress Slick Popup plugin (versions <= 1.7.1).
Solution
This plugin was closed on May 28, 2019 and is no longer available for download.
Classification
Type BYPASS
OWASP Top 10 A2: Broken Authentication and Session Management
References
Plugin changelog
CVE
Name CVE-N/A
Versions
Affected In <= 1.7.1
Disclosure date
2019-06-11
Credits
WordFence
Submitter
ThreatPress