Missing Authorization Vulnerability in weDevs WP ERP Product
CVE-2023-45765
4.3MEDIUM
What is CVE-2023-45765?
A missing authorization vulnerability has been identified in the weDevs WP ERP plugin, which allows attackers to exploit poorly configured access control security levels. This vulnerability affects all versions up to 1.12.6, potentially granting unauthorized users access to sensitive features and data. It is crucial for users of WP ERP to secure their installations against this risk and ensure proper access control measures are in place to avoid exploitation.
Affected Version(s)
WP ERP <= 1.12.6