Access violation vulnerability in Lead Form Data Collection to CRM 3.1

The Lead Form Data Collection to CRM plugin for WordPress has a security issue that can allow unauthorized changes to data, potentially leading to an increase in privileges. This is because the plugin does not have a check in place to ensure only certain users with the right level of access can make changes. This means that someone with at least Subscriber-level access can change important settings on the website, such as the default role for new users and enabling user registration. This could give the attacker administrative access to the site. Other functions may also be affected by this vulnerability.

Detected in:

Lead Form Data Collection to CRM fixed vulnerable versions: >= * <= 3.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.