What the vulnerability does
01Description
Improper Privilege Management vulnerability in Darren Cooney Instant Images allows Privilege Escalation.This issue affects Instant Images: from n/a through 6.1.0.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
What the vulnerability does
Improper Privilege Management vulnerability in Darren Cooney Instant Images allows Privilege Escalation.This issue affects Instant Images: from n/a through 6.1.0.
Explanation of Vulnerability in Simple Terms
Instant Images versions up to 6.1.0 contain a privilege management flaw that allows high-privileged users to perform unauthorized actions. An authenticated administrator can read sensitive data, modify site content, or disrupt service. The vulnerability requires admin-level access to exploit and does not affect the confidentiality or integrity of data outside the admin scope.
What an attacker can do
Read sensitive data, modify content, or disrupt service if they have admin-level access.
Potential impact on your site
Admins with compromised credentials could abuse their role beyond intended scope; restrict admin access.
Conditions required to exploit
Attacker must have high-level administrative privileges on the site.
Key dates
External resources
Related vulnerabilities