CVE-2021-24188, CVE-2021-24189, CVE-2021-24190, CVE-2021-24191, CVE-2021-24192, CVE-2021-24193, CVE-2021-24194, CVE-2021-24195
The WP Content Copy Protection & No Right Click plugin before version 3.1.5 contains an AJAX action called 'cp_plugins_do_button_job_later_callback' that can be exploited by users with low privilege levels to install any plugin from the WordPress repository or activate existing plugins on the site, potentially allowing attackers to deploy vulnerable plugins that could facilitate remote code execution or other serious attacks.
Based on public CVE data (MITRE/NVD).