Description
WordPress Plugin CMS Tree Page View is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently move pages. WordPress Plugin CMS Tree Page View version 1.3.4 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.4 or latest
References
Related Vulnerabilities
WordPress Plugin View All Post's Pages Cross-Site Scripting (0.9)
Moodle Improper Access Control Vulnerability (CVE-2015-2267)
Internet Information Services CVE-2006-6578 Vulnerability (CVE-2006-6578)
WordPress Plugin Estatik Real Estate Cross-Site Request Forgery (3.8.3)
SharePoint Download of Code Without Integrity Check Vulnerability (CVE-2020-1452)