ZeroHour

CVE-2017-6954

CVSS 3.0
4.3 medium
EPSS
1%p64
Published
()
Modified
Description

An issue was discovered in includes/component.php in the BuddyPress Docs plugin before 1.9.3 for WordPress. It is possible for authenticated users to edit documents of other users without proper permissions.

Vendors
buddypress
Products
buddypress
Ecosystems
WordPress
Weakness
CWE-269
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.