Description
WordPress Plugin Beaver Builder-WordPress Page Builder is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently create/edit pages, manage services or list all users. WordPress Plugin Beaver Builder-WordPress Page Builder version 1.7 is vulnerable.
Remediation
Update to plugin version 1.7.1 or latest
References
Related Vulnerabilities
PHPFusion Multiple SQL Injection Vulnerabilities (CVE-2014-8596)
PHP Out-of-bounds Read Vulnerability (CVE-2018-10549)
WordPress Plugin WassUp Real Time Analytics Unspecified Vulnerability (1.7.2)
Chamilo Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2021-38745)
WordPress Plugin Event Calendar WD-Responsive Event Calendar Cross-Site Scripting (1.1.42)