Access violation vulnerability in SureDash 1.0.3

The SureDash plugin for WordPress has a security issue that allows users to gain higher levels of access than they should have. This problem affects all versions up to and including 1.0.3. The plugin does not have proper restrictions in place to prevent users from changing their roles, which means that attackers who are already logged in and have access at the Subscriber level or higher can gain even more privileges.

Detected in:

SureDash fixed vulnerable versions: >= * <= 1.0.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.