Access violation vulnerability in KB Support – WordPress Help Desk and Knowledge Base 1.6.6

The KB Support plugin for WordPress has a security vulnerability that could allow unauthorized people to change or delete data. This can happen in all versions up to 1.6.6, and even if the user has only Subscriber-level access. It’s important to fix this issue to prevent attackers from doing things like responding to tickets, changing the status of posts, deleting posts, adding notes to tickets, or adding/removing ticket participants.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.