Access violation vulnerability in Buyent 1.0.7

A plugin called Buyent Classified that comes with the Buyent theme for WordPress has a security issue. This means that anyone can register as a user and gain more privileges than they should have. It doesn’t check or limit the user’s role when they register using a certain part of the plugin. This makes it easy for people who are not logged in to create accounts with more power, like an administrator, and take over the whole website.

Detected in:

Buyent open vulnerable versions: >= * <= 1.0.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.