Description
WordPress Plugin Beaver Builder-WordPress Page Builder is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently create/edit pages, manage services or list all users. WordPress Plugin Beaver Builder-WordPress Page Builder version 1.7 is vulnerable.
Remediation
Update to plugin version 1.7.1 or latest
References
Related Vulnerabilities
Oracle HTTP Server NULL Pointer Dereference Vulnerability (CVE-2019-10097)
WordPress Plugin WP Vault Local File Inclusion (0.8.6.6)
WordPress Plugin Wow Moodboard Lite Open Redirect (1.1.1.1)
Oracle JRE CVE-2013-2438 Vulnerability (CVE-2013-2438)
WordPress Plugin Gmedia Photo Gallery Cross-Site Scripting (0.9.3)