Early Access — Mondoo Vulnerability Intelligence is currently in preview.
The Rankology SEO and Analytics Tool plugin for WordPress is vulnerable to unauthorized modification of data due to an incorrect capability check on the 'rankology_code_block' page in all versions up to, and including, 2.0. This makes it possible for authenticated attackers, with Editor-level access and above, to add header and footer code blocks.
Exploitability
AV:NAC:LPR:HUI:NScope
S:UImpact
C:NI:LA:N2.7/CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:NOther