← Back to CVE List
WORDFENCE-dc1ae2c7-1eff-4976-8f88-f0b97a5cf323Wordfence
Vulnerability Summary
WordPress Core is vulnerable to Missing Authorization via the wp_ajax_activate_plugin() AJAX action in various versions up to, and including, 7.1 due to a missing manage_network_plugins capability check when activating a network-only plugin, and a path-normalization mismatch between is_network_only_plugin() and activate_plugin(). This makes it possible for authenticated attackers with site-administrator access on a Multisite network to network-activate an installed network-only plugin.
CVSS v3.1 Base Metrics — Score 2.7 (LOW)
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredHigh
User InteractionNone
ScopeUnchanged
ConfidentialityNone
IntegrityLow
AvailabilityNone
Affected & Patched Versions
- WordPress * - 6.6.7
- WordPress 6.7 - 6.7.7
- WordPress 6.8 - 6.8.8
- WordPress 6.9 - 6.9.7
- WordPress 7.0 - 7.0.4
- WordPress 7.1 - 7.1
- WordPress 1