Vulnerabilities > CVE-2021-24652 - Incorrect Authorization vulnerability in Wpxpo Postx - Gutenberg Blocks for Post Grid
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
NONE Integrity impact
HIGH Availability impact
NONE Summary
The PostX – Gutenberg Blocks for Post Grid WordPress plugin before 2.4.10 performs incorrect checks before allowing any logged in user to perform some ajax based requests, allowing any user to modify, delete or add ultp_options values.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |