Description
WordPress Plugin LeadConnector is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently delete arbitrary posts or pages. WordPress Plugin LeadConnector version 1.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.8 or latest
References
Related Vulnerabilities
SharePoint Improper Certificate Validation Vulnerability (CVE-2019-1006)
WordPress Plugin Lazy content Slider Cross-Site Request Forgery (3.4)
Oracle JRE CVE-2013-5805 Vulnerability (CVE-2013-5805)
Apache HTTP Server Out-of-bounds Write Vulnerability (CVE-2019-10097)
WordPress Plugin Plugmatter Optin Feature Box Multiple SQL Injection Vulnerabilities (2.0.13)