What the vulnerability does
01Description
Missing Authorization vulnerability in BloomPixel Max Addons Pro for Bricks.This issue affects Max Addons Pro for Bricks: from n/a through 1.6.1.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
What the vulnerability does
Missing Authorization vulnerability in BloomPixel Max Addons Pro for Bricks.This issue affects Max Addons Pro for Bricks: from n/a through 1.6.1.
Explanation of Vulnerability in Simple Terms
Max Addons Pro for Bricks versions up to 1.6.1 lack proper authorization checks, allowing unauthenticated attackers to modify site data. The vulnerability requires only network access and no user interaction. An attacker can alter content or settings without permission, potentially affecting site integrity and functionality.
What an attacker can do
Modify site data and settings without logging in or having permission.
Potential impact on your site
Unauthorized changes to site content, settings, or data by anyone with network access.
Conditions required to exploit
Network access to the site; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities