{"containers":{"cna":{"affected":[{"product":"WPBakery Page Builder (Visual Composer) Clipboard","vendor":"bitorbit","versions":[{"lessThan":"4.5.0*","status":"affected","version":"4.5.0","versionType":"custom"},{"lessThan":"4.5.8","status":"affected","version":"4.5.8","versionType":"custom"}]}],"credits":[{"lang":"en","value":"Charles Strader Sweethill"}],"descriptions":[{"lang":"en","value":"An AJAX action registered by the WPBakery Page Builder (Visual Composer) Clipboard WordPress plugin before 4.5.8 did not have capability checks, allowing low privilege users, such as subscribers, to update the license options (key, email)."}],"problemTypes":[{"descriptions":[{"cweId":"CWE-863","description":"CWE-863 Incorrect Authorization","lang":"en","type":"CWE"}]}],"providerMetadata":{"dateUpdated":"2021-05-05T18:39:42.000Z","orgId":"1bfdd5d7-9bf6-4a53-96ea-42e2716d7a81","shortName":"WPScan"},"references":[{"tags":["x_refsource_MISC"],"url":"https://codecanyon.net/item/visual-composer-clipboard/8897711"},{"tags":["x_refsource_CONFIRM"],"url":"https://wpscan.com/vulnerability/354b98d8-46a1-4189-b347-198701ea59b9"}],"source":{"discovery":"UNKNOWN"},"title":"WPBakery Page Builder Clipboard < 4.5.8 - Unauthorised Arbitrary License Options Update","x_generator":"WPScan CVE Generator","x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"contact@wpscan.com","ID":"CVE-2021-24244","STATE":"PUBLIC","TITLE":"WPBakery Page Builder Clipboard < 4.5.8 - Unauthorised Arbitrary License Options Update"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"WPBakery Page Builder (Visual Composer) Clipboard","version":{"version_data":[{"version_affected":">=","version_name":"4.5.0","version_value":"4.5.0"},{"version_affected":"<","version_name":"4.5.8","version_value":"4.5.8"}]}}]},"vendor_name":"bitorbit"}]}},"credit":[{"lang":"eng","value":"Charles Strader Sweethill"}],"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"An AJAX action registered by the WPBakery Page Builder (Visual Composer) Clipboard WordPress plugin before 4.5.8 did not have capability checks, allowing low privilege users, such as subscribers, to update the license options (key, email)."}]},"generator":"WPScan CVE Generator","problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"CWE-863 Incorrect Authorization"}]}]},"references":{"reference_data":[{"name":"https://codecanyon.net/item/visual-composer-clipboard/8897711","refsource":"MISC","url":"https://codecanyon.net/item/visual-composer-clipboard/8897711"},{"name":"https://wpscan.com/vulnerability/354b98d8-46a1-4189-b347-198701ea59b9","refsource":"CONFIRM","url":"https://wpscan.com/vulnerability/354b98d8-46a1-4189-b347-198701ea59b9"}]},"source":{"discovery":"UNKNOWN"}}},"adp":[{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-03T19:21:18.915Z"},"title":"CVE Program Container","references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"https://codecanyon.net/item/visual-composer-clipboard/8897711"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://wpscan.com/vulnerability/354b98d8-46a1-4189-b347-198701ea59b9"}]}]},"cveMetadata":{"assignerOrgId":"1bfdd5d7-9bf6-4a53-96ea-42e2716d7a81","assignerShortName":"WPScan","cveId":"CVE-2021-24244","datePublished":"2021-05-05T18:39:42.000Z","dateReserved":"2021-01-14T00:00:00.000Z","dateUpdated":"2024-08-03T19:21:18.915Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"}