Description
WordPress Plugin Simplr Registration Form Plus+ is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin Simplr Registration Form Plus+ version 2.4.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.4.4 or latest
References
Related Vulnerabilities
WordPress 6.5.x Multiple Vulnerabilities (6.5 - 6.5.4)
Dotclear Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-5083)
WordPress Plugin Admin Custom Login Cross-Site Scripting (2.5.3.1)
WordPress Plugin ReFlex Gallery 'php.php' Arbitrary File Upload (1.4.6)
WordPress Plugin File Manager Unspecified Vulnerability (4.1.4)