CVE-2020-9456
EUVD-2020-3027506.03.2020, 19:15
In the RegistrationMagic plugin through 4.6.0.3 for WordPress, the user controller allows remote authenticated users (with minimal privileges) to elevate their privileges to administrator via class_rm_user_controller.php rm_user_edit.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| metagauss | registrationmagic | 𝑥 ≤ 4.6.0.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration