关键信息 漏洞概述 漏洞名称: WordPress Team Builder Plugin <= 1.5.7 is vulnerable to Broken Access Control 优先级: High priority 受影响版本: <= 1.5.7 修复状态: No official fix available 风险 风险等级: 7.6 描述: A broken access control issue refers to a missing authorization, authentication or nonce token check in a function that could lead to an unprivileged user to executing a certain higher privileged action. 解决方案 建议: Automatically mitigate vulnerabilities and keep your websites safe 措施: Patchstack has issued a virtual patch to mitigate this issue by blocking any attacks until an official fix becomes available. 时间线 报告日期: 20 Mar 2023 早期预警发送给Patchstack客户: 04 Jun 2023 发布日期: 06 Jun 2023 其他信息 插件类型: Plugin 漏洞版本: <= 1.5.7