Description
WordPress Plugin WP Project Manager-Task, team, and project management featuring kanban board and gantt charts is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin WP Project Manager-Task, team, and project management featuring kanban board and gantt charts version 2.6.4 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.6.5 or latest
References
Related Vulnerabilities
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2156)
MongoDb CVE-2017-15535 Vulnerability (CVE-2017-15535)
WordPress Plugin Best Image Gallery & Responsive Photo Gallery-FooGallery Security Bypass (1.6.15)
TYPO3 CVE-2013-7080 Vulnerability (CVE-2013-7080)
Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-4553)