CVE-2015-0890: Medium severity bestwebsoft google captcha vulnerability
Published Mar 3, 2015
·Updated
The BestWebSoft Google Captcha (aka reCAPTCHA) plugin before 1.13 for WordPress allows remote attackers to bypass the CAPTCHA protection mechanism and obtain administrative access via unspecified vectors.
Affected Software
1 affected component
Bestwebsoft Google Captcha Wordpress<=1.12
Event History
Mar 3, 2015
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0890?
CVE-2015-0890 is classified as a medium severity vulnerability due to its potential to allow unauthorized administrative access.
2
How do I fix CVE-2015-0890?
To fix CVE-2015-0890, update the BestWebSoft Google Captcha plugin to version 1.13 or later immediately.
3
Who is affected by CVE-2015-0890?
CVE-2015-0890 affects users of the BestWebSoft Google Captcha plugin for WordPress versions prior to 1.13.
4
What are the consequences of exploiting CVE-2015-0890?
Exploiting CVE-2015-0890 allows remote attackers to bypass CAPTCHA protections and gain administrative access to WordPress sites.
5
When was CVE-2015-0890 discovered?
CVE-2015-0890 was reported and made public in January 2015.