What the vulnerability does
01Description
Missing Authorization vulnerability in Save as PDF plugin by Pdfcrowd Word Replacer Pro.This issue affects Word Replacer Pro: from n/a through 1.0.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
What the vulnerability does
Missing Authorization vulnerability in Save as PDF plugin by Pdfcrowd Word Replacer Pro.This issue affects Word Replacer Pro: from n/a through 1.0.
Explanation of Vulnerability in Simple Terms
Word Replacer Pro lacks proper authorization checks, allowing unauthenticated attackers to modify site content and disrupt service. An attacker can send network requests to alter text replacements without needing credentials or user interaction. This affects all versions up to 1.0. Update immediately to a patched version.
What an attacker can do
Modify site content and disrupt availability without authentication.
Potential impact on your site
Attackers can alter published content and cause service disruption without your knowledge or permission.
Conditions required to exploit
Network access only; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities