What the vulnerability does
01Description
Missing Authorization vulnerability in Brainstorm Force Convert Pro.This issue affects Convert Pro: from n/a through 1.7.5.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:H/A:N
What the vulnerability does
Missing Authorization vulnerability in Brainstorm Force Convert Pro.This issue affects Convert Pro: from n/a through 1.7.5.
Explanation of Vulnerability in Simple Terms
Convert Pro versions up to 1.7.5 lack proper authorization checks, allowing an attacker to modify site content if a user visits a malicious link. The vulnerability requires user interaction but can result in unauthorized changes to the site. Site administrators should update to a version newer than 1.7.5 to remediate this issue.
What an attacker can do
Modify site content or settings if a user clicks a malicious link.
Potential impact on your site
Unauthorized changes to site content, forms, or settings without your knowledge or consent.
Conditions required to exploit
No authentication required, but the victim must click an attacker-supplied link.
Key dates
External resources
Related vulnerabilities