What the vulnerability does
01Description
Auth. WordPress Options Change vulnerability in Image Hover Effects Ultimate plugin <= 9.7.1 on WordPress.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
What the vulnerability does
Auth. WordPress Options Change vulnerability in Image Hover Effects Ultimate plugin <= 9.7.1 on WordPress.
Explanation of Vulnerability in Simple Terms
Image Hover Effects Ultimate versions up to 9.7.1 contain an authorization flaw that allows high-privileged users to read sensitive data, modify site content, or disrupt service. The vulnerability requires administrator-level access and network connectivity. Site owners should update to a version newer than 9.7.1 immediately.
What an attacker can do
Read sensitive data, modify site content, or disrupt service if they have admin-level access.
Potential impact on your site
A compromised admin account could be used to steal data, alter pages, or take the site offline.
Conditions required to exploit
Attacker must have administrator-level privileges on the WordPress site.
Key dates
External resources
Related vulnerabilities