Description
WordPress Plugin Simple Social Media Share Buttons-Social Sharing for Everyone is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin Simple Social Media Share Buttons-Social Sharing for Everyone versions ranging from 2.0.4 and up to (and including) 2.0.21 are vulnerable.
Remediation
Update to plugin version 2.0.22 or latest
References
https://www.webarxsecurity.com/wordpress-plugin-simple-social-buttons/
https://plugins.svn.wordpress.org/simple-social-buttons/trunk/readme.txt
Related Vulnerabilities
PostgreSQL Other Vulnerability (CVE-2007-0556)
WordPress Plugin UpdraftPlus WordPress Backup Security Bypass (1.22.1)
Internet Information Services Other Vulnerability (CVE-2011-5279)
ReviveAdserver Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-7371)
Drupal Core 5.x Multiple Security Bypass Vulnerabilities (5.0 - 5.10)