First published: Wed Apr 24 2024(Updated: )
Incorrect Default Permissions vulnerability in Metagauss RegistrationMagic allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects RegistrationMagic: from n/a through 5.1.9.2.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
RegistrationMagic User Registration Plugin | <5.1.9.3 | |
Metagauss Leadmagic | >=n/a<=5.1.9.2 | |
RegistrationMagic | <=5.1.9.2 |
Update to 5.1.9.3 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-23976 is classified as a vulnerability with incorrect default permissions that may allow unauthorized access to certain functionalities.
To fix CVE-2023-23976, update Metagauss RegistrationMagic to the latest version that addresses the permissions issue.
CVE-2023-23976 affects all versions of Metagauss RegistrationMagic from n/a up to and including 5.1.9.2.
CVE-2023-23976 is an incorrect default permissions vulnerability related to access control lists (ACLs).
Yes, CVE-2023-23976 can potentially allow unauthorized users to access functionalities not properly constrained by ACLs.