What the vulnerability does
01Description
Missing Authorization vulnerability in WP Job Portal WP Job Portal – A Complete Job Board.This issue affects WP Job Portal – A Complete Job Board: from n/a through 2.0.1.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
What the vulnerability does
Missing Authorization vulnerability in WP Job Portal WP Job Portal – A Complete Job Board.This issue affects WP Job Portal – A Complete Job Board: from n/a through 2.0.1.
Explanation of Vulnerability in Simple Terms
WP Job Portal versions up to 2.0.1 lack proper authorization checks, allowing an attacker to modify or delete job listings and other data without permission. The vulnerability requires user interaction—typically a victim clicking a malicious link—but does not require authentication. Site administrators should update to a version newer than 2.0.1 to prevent unauthorized changes to job board content.
What an attacker can do
Modify or delete job listings and site data without authorization.
Potential impact on your site
Job listings and board data can be altered or removed by unauthenticated visitors.
Conditions required to exploit
Victim must click a malicious link; no login required.
Key dates
External resources
Related vulnerabilities