Page Builder: KingComposer < 2.9.4 - Authorization Bypass due to Improper Access Control
2020-06-15 00:00
Jerome BruandetStrategic Overview
StatusPatched in 2.9.4
Affected Version
<= 2.9.3CVSS8.8High
CVE
CVE-2020-36700Vulnerability Overview
The Page Builder: KingComposer plugin for WordPress is vulnerable to authorization bypass in versions up to, and including, 2.9.3. This is due to a security nonce being leaked in the '/wp-admin/index.php' page. This makes it possible for authenticated attackers to change arbitrary WordPress options, delete arbitrary files/folders, and inject arbitrary content.
Technical Analysis
REMEDIATION: Update to version 2.9.4, or a newer patched version --- IDENTIFIER: CWE-284 (Improper Access Control) The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
External References
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C