Missing Authorization Vulnerability in Sola Support Ticket Plugin by SolaPlugins
CVE-2023-25997
6.5MEDIUM
What is CVE-2023-25997?
A vulnerability exists in the Sola Support Ticket plugin developed by SolaPlugins, linked to the improper configuration of access control security levels. This missing authorization issue allows attackers to exploit the system, potentially leading to unauthorized actions that compromise the security of the application. Users utilizing versions from n/a through 3.17 are at risk, emphasizing the need for immediate updates to mitigate potential breaches.
Affected Version(s)
Sola Support Ticket <= 3.17