What the vulnerability does
01Description
Missing Authorization vulnerability in RadiusTheme The Post Grid the-post-grid.This issue affects The Post Grid: from n/a through <= 7.7.4.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
What the vulnerability does
Missing Authorization vulnerability in RadiusTheme The Post Grid the-post-grid.This issue affects The Post Grid: from n/a through <= 7.7.4.
Explanation of Vulnerability in Simple Terms
The Post Grid plugin for WordPress contains a missing authorization check that allows unauthenticated attackers to read and modify certain data. An attacker can access the plugin's functionality without logging in, potentially viewing or altering post grid configurations and related content. This affects all versions up to 7.7.4.
What an attacker can do
Read and modify post grid data without authentication.
Potential impact on your site
Unauthorized users can view and alter post grid settings and content, potentially exposing or corrupting site data.
Conditions required to exploit
Network access to the WordPress site; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities