Access violation vulnerability in rtMedia for WordPress, BuddyPress and bbPress 4.6.15

The rtMedia plugin for WordPress, BuddyPress and bbPress is vulnerable to unauthorized access of data in versions up to, and including, 4.6.14. This means attackers with subscriber-level and higher permission can gain access to sensitive information. It is due to the missing capability check on the export_settings function.

Detected in:

rtMedia for WordPress, BuddyPress and bbPress fixed vulnerable versions: >= * < 4.6.15

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.