Authentication Bypass by Spoofing Vulnerability Affects Coming soon and Maintenance mode
CVE-2023-49741
3.7LOW
Key Information:
- Vendor
- WordPress
- Vendor
- CVE Published:
- 4 June 2024
Summary
Authentication Bypass by Spoofing vulnerability in wpdevart Coming soon and Maintenance mode allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Coming soon and Maintenance mode: from n/a through 3.7.3.
Affected Version(s)
Coming soon and Maintenance mode <= 3.7.3
References
CVSS V3.1
Score:
3.7
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Mika (Patchstack Alliance)