Incorrect Privilege Assignment vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Privilege Escalation.This issue affects LiteSpeed Cache: from 1.9 through 6.3.0.1.
The LiteSpeed Cache plugin’s user simulation feature is protected by a weak security hash generated using predictable values. An attacker can exploit this vulnerability by brute-forcing the security hash and passing it in a cookie along with a targeted user ID. If successful, the attacker can escalate their privileges to that of an Administrator.
Affected Versions
- LiteSpeed Cache plugin versions prior to 6.4 are vulnerable.
Chandu shetty
Want it, but it’s vulnerable to the new users nah!