Skip to content

Known CVE

Controlled Admin Access WordPress Plugin <= 1.4.0 - Improper Access Control & Privilege Escalation

An Improper Access Control vulnerability was discovered in the plugin. Uncontrolled access to the website customization functionality and global CMS settings, like /wp-admin/customization.php and /wp-admin/options.php, can lead to a complete compromise of the target resource.

CVE-2021-24215

Critical2021CVSS 9.8CWE-425CWE-284

cve2021 · authenticated · wpscan · wordpress · wp-plugin · wp · controlled-admin-access · wpruby

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website