Unsecured Access: Magazine3 Easy Table of Contents Vulnerable to Missing Authorization
CVE-2023-25469
5.4MEDIUM
What is CVE-2023-25469?
The Easy Table of Contents plugin by Magazine3 exhibits a misconfiguration in its access control security settings, which leads to missing authorization checks. This vulnerability can be exploited by an attacker to gain unauthorized access, potentially compromising sensitive content or configurations within the WordPress environment. Affected versions include all releases from n/a up to and including 2.0.45.2, thereby posing significant risks to websites relying on this plugin for managing their content tables.
Affected Version(s)
Easy Table of Contents <= 2.0.45.2