Description
WordPress Plugin Cookie Consent for WP-Cookie Consent, Consent Log, Cookie Scanner, Script Blocker (for GDPR, CCPA & ePrivacy) is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently delete arbitrary posts. WordPress Plugin Cookie Consent for WP-Cookie Consent, Consent Log, Cookie Scanner, Script Blocker (for GDPR, CCPA & ePrivacy) version 3.0.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.1.0 or latest
References
Related Vulnerabilities
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-1484)
Oracle Database Server CVE-2014-4237 Vulnerability (CVE-2014-4237)
WebLogic Incorrect Authorization Vulnerability (CVE-2018-1258)
MySQL Other Vulnerability (CVE-2002-1374)
Oracle Database Server CVE-2014-6567 Vulnerability (CVE-2014-6567)