What the vulnerability does
01Description
Unauth. Plugin Settings Change vulnerability in Modula plugin <= 2.6.9 on WordPress.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
What the vulnerability does
Unauth. Plugin Settings Change vulnerability in Modula plugin <= 2.6.9 on WordPress.
Explanation of Vulnerability in Simple Terms
The Modula Image Gallery WordPress plugin through version 2.6.9 contains an access control flaw that allows unauthenticated attackers to modify site data over the network. The vulnerability does not require user interaction or special conditions. Site administrators should update the plugin immediately to prevent unauthorized changes to gallery content and settings.
What an attacker can do
Modify gallery data and site settings without authentication.
Potential impact on your site
Attackers can alter or delete image galleries and related content without your permission.
Conditions required to exploit
Network access only; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities