Description
WordPress Plugin Thrive Ultimatum is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently add arbitrary data to a predefined option in the wp_options table. WordPress Plugin Thrive Ultimatum version 2.3.9.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.3.9.4 or latest
References
Related Vulnerabilities
Oracle Database Server CVE-2014-6545 Vulnerability (CVE-2014-6545)
Python Integer Overflow or Wraparound Vulnerability (CVE-2007-4965)
Lighttpd Other Vulnerability (CVE-2006-0814)
XWiki Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-32732)
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2016-9585)