Input validation vulnerability in Nice PayPal Button Lite 1.3.5

The Nice PayPal Button Lite plugin for WordPress has a security problem that affects version 1.3.5 and all earlier versions. This means that somebody could change the settings of this plugin without needing to be logged in. All they would need to do is trick an administrator into clicking a link. This is because the plugin does not properly check to make sure that the person making the changes is allowed to do so.

Detected in:

Nice PayPal Button Lite open vulnerable versions: >= * <= 1.3.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.