Slider Revolution
cpe:2.3:a:themepunch:slider_revolution:*:*:*:*:wordpress:*:*
- >= 6.0.0, <= 6.7.55
- >= 7.0.0, <= 7.0.14
A vulnerability exists in the Slider Revolution WordPress plugin, specifically in versions 6.0.0 through 6.7.55 and 7.0.0 through 7.0.14. The issue arises from the plugin's failure to properly verify user authorization for certain actions, enabling authenticated attackers with Contributor-level access or higher to deactivate any active plugin on the site.
Exploitation of this vulnerability allows for unauthorized deactivation of active plugins, which could disrupt site functionality or remove critical features.
Users can update to Slider Revolution version 6.7.56 or 7.0.15 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.