Description
WordPress Plugin WordPress Access Areas is prone to a security bypass vulnerability. Attackers can exploit this vulnerability to perform otherwise restricted actions and subsequently change the access settings for posts. WordPress Plugin WordPress Access Areas version 1.3.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.3.1 or latest
References
Related Vulnerabilities
WordPress Plugin Arigato Autoresponder and Newsletter Multiple Unspecified Vulnerabilities (2.4.2)
WordPress Improper Input Validation Vulnerability (CVE-2017-6815)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-0793)
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1559)
WordPress Plugin Caldera Forms-More Than Contact Forms Arbitrary File Disclosure (1.8.1)