What the vulnerability does
01Description
Missing Authorization vulnerability in Saleswonder Team: Tobias CF7 WOW Styler cf7-styler.This issue affects CF7 WOW Styler: from n/a through <= 1.6.4.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
What the vulnerability does
Missing Authorization vulnerability in Saleswonder Team: Tobias CF7 WOW Styler cf7-styler.This issue affects CF7 WOW Styler: from n/a through <= 1.6.4.
Explanation of Vulnerability in Simple Terms
CF7 WOW Styler versions up to 1.6.4 lack proper authorization checks, allowing authenticated users with low privileges to read, modify, or delete data they should not access. An attacker with a basic user account can exploit this to view or alter sensitive information stored by the plugin. Update to a version newer than 1.6.4 to resolve this issue.
What an attacker can do
Read, modify, or delete data without proper permission checks.
Potential impact on your site
Unauthorized users can access or alter plugin data; sensitive information may be exposed or corrupted.
Conditions required to exploit
Attacker must have a low-privilege user account on the site.
Key dates
External resources
Related vulnerabilities