What the vulnerability does
01Description
Missing Authorization vulnerability in Martin Gibson WP LinkedIn Auto Publish.This issue affects WP LinkedIn Auto Publish: from n/a through 8.11.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
What the vulnerability does
Missing Authorization vulnerability in Martin Gibson WP LinkedIn Auto Publish.This issue affects WP LinkedIn Auto Publish: from n/a through 8.11.
Explanation of Vulnerability in Simple Terms
WP LinkedIn Auto Publish versions 8.11 and earlier lack proper authorization checks, allowing authenticated users with low privileges to modify site data and disrupt service. An attacker with a basic user account can perform actions they should not be permitted to do. Update to a version newer than 8.11 to restore proper access controls.
What an attacker can do
Modify site data and cause service disruption with a low-privilege user account.
Potential impact on your site
Unauthorized users can alter content and availability; requires immediate update to prevent data tampering.
Conditions required to exploit
Attacker must have a valid WordPress user account with low privileges; no special user interaction required.
Key dates
External resources
Related vulnerabilities