Description
WordPress Plugin BP Group Documents is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently edit any document. WordPress Plugin BP Group Documents version 1.10 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.11 or latest
References
Related Vulnerabilities
MySQL CVE-2017-10155 Vulnerability (CVE-2017-10155)
WordPress Plugin WP Easy Gallery 'select_gallery' Parameter Cross-Site Scripting (1.7)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-3390)
WordPress Plugin Fancy Product Designer-WooCommerce Arbitrary File Upload (4.6.8)