Description
WordPress Plugin CF7 Manual Spam Blocker is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin CF7 Manual Spam Blocker version 1.0 is vulnerable.
Remediation
Update to plugin version 1.1.0 or latest
References
Related Vulnerabilities
WordPress Plugin Cart66 Lite::WordPress Ecommerce Multiple Vulnerabilities (1.5.1.14)
Magento Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2019-7932)
WordPress Plugin CWIS-Antivirus Security Scanner Unspecified Vulnerability (2.3.2)
MySQL CVE-2013-5860 Vulnerability (CVE-2013-5860)
WordPress Plugin Ajax BootModal Login Security Bypass (1.4.3)