Description
In Limesurvey before 3.17.14, admin users can access the plugin manager without proper permissions.
Remediation
References
Related Vulnerabilities
b2evolution Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3709)
WordPress Plugin Usernoise modal feedback/contact form Cross-Site Scripting (3.7.8)
WordPress Plugin Wordfence Security-Firewall & Malware Scan Cross-Site Scripting (6.0.21)
MySQL CVE-2013-3806 Vulnerability (CVE-2013-3806)
WordPress Plugin If>So Dynamic Content Unspecified Vulnerability (1.4.1)