CVE Database /
CVE-2021-24195
CVE · High
CVE-2021-24195 — WP Content Copy Protection & No Right Click [wp-content-copy-protector] < 3.1.5
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2021-24195
|
WP Content Copy Protection & No Right Click [wp-content-copy-protector] < 3.1.5 |
Improper Authorization |
High
8.8
|
< 3.1.5
|
3.1.5 |
2021-05-14 |
—
|
CVE-2021-24195
The wp-content-copy-protector plugin before version 3.1.5 contains an authorization flaw in its AJAX handler that allows users with low-level privileges to install arbitrary plugins from the WordPress repository and activate them without proper permission checks. An attacker could exploit this vulnerability to deploy vulnerable plugins on a target site, potentially leading to remote code execution or other serious security compromises.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings