What the vulnerability does
01Description
Missing Authorization vulnerability in Deepak anand WP Dummy Content Generator.This issue affects WP Dummy Content Generator: from n/a through 2.3.0.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
What the vulnerability does
Missing Authorization vulnerability in Deepak anand WP Dummy Content Generator.This issue affects WP Dummy Content Generator: from n/a through 2.3.0.
Explanation of Vulnerability in Simple Terms
WP Dummy Content Generator through version 2.3.0 lacks proper authorization checks, allowing unauthenticated attackers to modify site content. An attacker can send network requests to alter data without needing valid credentials or user interaction. This affects the integrity of generated dummy content and potentially other site data.
What an attacker can do
Modify site content without authentication.
Potential impact on your site
Attackers can alter dummy content or other data on your site without logging in.
Conditions required to exploit
Network access to the WordPress site; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities