Description
WordPress Plugin BP Group Documents is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently edit any document. WordPress Plugin BP Group Documents version 1.10 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.11 or latest
References
Related Vulnerabilities
MySQL CVE-2017-3652 Vulnerability (CVE-2017-3652)
MySQL CVE-2019-2830 Vulnerability (CVE-2019-2830)
Apache Tomcat Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-4431)
WebLogic Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2021-21350)
Jenkins Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1000362)